Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-13333

Опубликовано: 06 окт. 2020
Источник: debian
EPSS Низкий

Описание

A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtracks for certain user supplied values resulting in high CPU usage.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gitlabfixed13.2.10-1package

EPSS

Процентиль: 36%
0.00151
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 5 лет назад

A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtracks for certain user supplied values resulting in high CPU usage.

CVSS3: 4.3
nvd
больше 5 лет назад

A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtracks for certain user supplied values resulting in high CPU usage.

github
больше 3 лет назад

A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to update an asset as a link from a release had a regex check which caused exponential number of backtracks for certain user supplied values resulting in high CPU usage.

EPSS

Процентиль: 36%
0.00151
Низкий