GitHub contains a flaw that is triggered during the handling of a specially crafted Git tree which can overwrite the .git/config file. This may allow a context-dependent attacker to manipulate the file contents leading to the execution of arbitrary commands.