Buffer overflow in the C implementation of the apply_delta function in _pack.c in Dulwich before 0.9.9 allows remote attackers to execute arbitrary code via a crafted pack file.
Exploitability
AV:NAC:LAu:NImpact
C:PI:PA:P7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P