Описание
Null Pointer Dereference in AddTime API Causes Authenticated Denial of Service
A flaw was found in Gitea. An authenticated attacker could exploit a null pointer dereference within the AddTime API. This can lead to a denial of service (DoS), making the application unavailable to legitimate users.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| OpenShift Pipelines | openshift-pipelines-client | Not affected | ||
| OpenShift Pipelines | openshift-pipelines/pipelines-cli-tkn-rhel9 | Not affected | ||
| OpenShift Pipelines | openshift-pipelines/pipelines-opc-rhel9 | Not affected | ||
| OpenShift Pipelines | openshift-pipelines/pipelines-pipelines-as-code-cli-rhel9 | Not affected | ||
| OpenShift Pipelines | openshift-pipelines/pipelines-pipelines-as-code-controller-rhel9 | Not affected | ||
| OpenShift Pipelines | openshift-pipelines/pipelines-pipelines-as-code-watcher-rhel9 | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=2515497code.gitea.io/gitea: Gitea: Denial of Service via Null Pointer Dereference in AddTime API
2.7 Low
CVSS3
Связанные уязвимости
CVSS3: 2.7
nvd
около 1 месяца назад
Null Pointer Dereference in AddTime API Causes Authenticated Denial of Service
CVSS3: 2.7
github
около 2 месяцев назад
Gitea: Null Pointer Dereference in AddTime API Causes Authenticated Denial of Service
2.7 Low
CVSS3