Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-10081

Опубликовано: 13 мар. 2020
Источник: debian
EPSS Низкий

Описание

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gitlabfixed12.6.8-1experimentalpackage
gitlabfixed12.6.8-3package

Примечания

  • https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/

EPSS

Процентиль: 23%
0.00075
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

CVSS3: 6.5
nvd
почти 6 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

github
больше 3 лет назад

GitLab before 12.8.2 has Incorrect Access Control. It was internally discovered that the LFS import process could potentially be used to incorrectly access LFS objects not owned by the user.

EPSS

Процентиль: 23%
0.00075
Низкий