Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-10081

Опубликовано: 13 мар. 2020
Источник: debian

Описание

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gitlabfixed12.6.8-1experimentalpackage
gitlabfixed12.6.8-3package

Примечания

  • https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
nvd
около 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

github
почти 4 года назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.