Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hwx9-v7rw-v3qm

Опубликовано: 07 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In specific circumstances, trace file buffers in GitLab Runner versions up to 14.3.4, 14.4 to 14.4.2, and 14.5 to 14.5.2 would re-use the file descriptor 0 for multiple traces and mix the output of several jobs

In specific circumstances, trace file buffers in GitLab Runner versions up to 14.3.4, 14.4 to 14.4.2, and 14.5 to 14.5.2 would re-use the file descriptor 0 for multiple traces and mix the output of several jobs

EPSS

Процентиль: 39%
0.00175
Низкий

7.5 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 3 лет назад

In specific circumstances, trace file buffers in GitLab Runner versions up to 14.3.4, 14.4 to 14.4.2, and 14.5 to 14.5.2 would re-use the file descriptor 0 for multiple traces and mix the output of several jobs

CVSS3: 5.3
nvd
больше 3 лет назад

In specific circumstances, trace file buffers in GitLab Runner versions up to 14.3.4, 14.4 to 14.4.2, and 14.5 to 14.5.2 would re-use the file descriptor 0 for multiple traces and mix the output of several jobs

CVSS3: 5.3
debian
больше 3 лет назад

In specific circumstances, trace file buffers in GitLab Runner version ...

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость приложения для запуска заданий CI/CD GitLab Runner, связанная с раскрытием информации, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 39%
0.00175
Низкий

7.5 High

CVSS3

Дефекты

CWE-200