Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-6386

Опубликовано: 05 фев. 2025
Источник: debian
EPSS Низкий

Описание

A denial of service vulnerability was identified in GitLab CE/EE, affecting all versions from 15.11 prior to 16.6.7, 16.7 prior to 16.7.5 and 16.8 prior to 16.8.2 which allows an attacker to spike the GitLab instance resource usage resulting in service degradation.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gitlabfixed16.6.7-1package

Примечания

  • https://about.gitlab.com/releases/2024/02/07/security-release-gitlab-16-8-2-released/#redos-in-ci/cd-pipeline-editor-while-verifying-pipeline-syntax

EPSS

Процентиль: 73%
0.00797
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
5 месяцев назад

A denial of service vulnerability was identified in GitLab CE/EE, affecting all versions from 15.11 prior to 16.6.7, 16.7 prior to 16.7.5 and 16.8 prior to 16.8.2 which allows an attacker to spike the GitLab instance resource usage resulting in service degradation.

CVSS3: 6.5
nvd
5 месяцев назад

A denial of service vulnerability was identified in GitLab CE/EE, affecting all versions from 15.11 prior to 16.6.7, 16.7 prior to 16.7.5 and 16.8 prior to 16.8.2 which allows an attacker to spike the GitLab instance resource usage resulting in service degradation.

CVSS3: 6.5
github
5 месяцев назад

A denial of service vulnerability was identified in GitLab CE/EE, affecting all versions from 15.11 prior to 16.6.7, 16.7 prior to 16.7.5 and 16.8 prior to 16.8.2 which allows an attacker to spike the GitLab instance resource usage resulting in service degradation.

CVSS3: 6.5
fstec
больше 1 года назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab EE/ CE, связанная с использованием неверных токенов аутентификации в результате неограниченного распределения ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 73%
0.00797
Низкий
Уязвимость CVE-2023-6386