Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-56657

Опубликовано: 13 авг. 2026
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

Gitea SSH Key Parser Denial of Service

A flaw was found in Gitea. The SSH Key Parser component is vulnerable to a denial of service. A remote attacker could potentially exploit this by submitting a specially crafted SSH key, leading to the unavailability of the Gitea service.

Отчет

This is a Moderate impact denial of Service vulnerability in the Gitea SSH key parser. Red Hat products are not affected as they do not expose any endpoint that ingest SSH key using Gitea. Products that import from code.gitea.io/gitea only compile the modules/structs and modules/json subpackages.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Pipelinesopenshift-pipelines-clientNot affected
OpenShift Pipelinesopenshift-pipelines/pipelines-cli-tkn-rhel9Not affected
OpenShift Pipelinesopenshift-pipelines/pipelines-opc-rhel9Not affected
OpenShift Pipelinesopenshift-pipelines/pipelines-pipelines-as-code-cli-rhel9Not affected
OpenShift Pipelinesopenshift-pipelines/pipelines-pipelines-as-code-controller-rhel9Not affected
OpenShift Pipelinesopenshift-pipelines/pipelines-pipelines-as-code-watcher-rhel9Not affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-770
https://bugzilla.redhat.com/show_bug.cgi?id=2515479code.gitea.io/gitea: Gitea: Denial of Service in SSH Key Parser

EPSS

Процентиль: 14%
0.00232
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.2
nvd
26 дней назад

Gitea SSH Key Parser Denial of Service

CVSS3: 5.3
redos
27 дней назад

Уязвимость gitea

CVSS3: 5.3
redos
27 дней назад

Уязвимость gitea

github
около 2 месяцев назад

Gitea SSH Key Parser Denial of Service

EPSS

Процентиль: 14%
0.00232
Низкий

6.5 Medium

CVSS3