> USN-8907-1: libgit2 vulnerability
[DATE: 08/10/2026 13:40]
[LANGUAGE: EN]
It was discovered that libgit2 incorrectly handled IP address
SubjectAltName verification in TLS certificate validation. A remote
attacker with a CA-trusted certificate could possibly use this issue
to perform a machine-in-the-middle attack, leading to the exposure
of sensitive information.