Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-5464

Опубликовано: 28 янв. 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5
CVSS3: 9.8

Описание

A flawed DNS rebinding protection issue was discovered in GitLab CE/EE 10.2 and later in the url_blocker.rb which could result in SSRF where the library is utilized.

РелизСтатусПримечание
bionic

DNE

devel

DNE

disco

DNE

esm-apps/xenial

not-affected

code not present
esm-infra-legacy/trusty

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

needs-triage

xenial

not-affected

code not present

Показывать по

EPSS

Процентиль: 62%
0.0043
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
около 6 лет назад

A flawed DNS rebinding protection issue was discovered in GitLab CE/EE 10.2 and later in the `url_blocker.rb` which could result in SSRF where the library is utilized.

CVSS3: 9.8
debian
около 6 лет назад

A flawed DNS rebinding protection issue was discovered in GitLab CE/EE ...

github
больше 3 лет назад

A flawed DNS rebinding protection issue was discovered in GitLab CE/EE 10.2 and later in the `url_blocker.rb` which could result in SSRF where the library is utilized.

EPSS

Процентиль: 62%
0.0043
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3