Описание
Denial of Service in pipelines affecting all versions of Gitlab EE and CE prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1 allows attacker to cause pipelines to fail.
Ссылки
- Broken Link
- Permissions Required
- Broken Link
- Permissions Required
Уязвимые конфигурации
Конфигурация 1Версия до 16.2.8 (исключая)Версия до 16.2.8 (исключая)Версия от 16.3.0 (включая) до 16.3.5 (исключая)Версия от 16.3.0 (включая) до 16.3.5 (исключая)
Одно из
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:gitlab:gitlab:16.4.0:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:16.4.0:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 52%
0.00776
Низкий
4.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-1287
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 4.3
ubuntu
почти 3 года назад
Denial of Service in pipelines affecting all versions of Gitlab EE and CE prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1 allows attacker to cause pipelines to fail.
CVSS3: 4.3
debian
почти 3 года назад
Denial of Service in pipelines affecting all versions of Gitlab EE and ...
CVSS3: 4.3
github
почти 3 года назад
Denial of Service in pipelines affecting all versions of Gitlab EE and CE prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1 allows attacker to cause pipelines to fail.
EPSS
Процентиль: 52%
0.00776
Низкий
4.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-1287
NVD-CWE-noinfo