2024年9月13日星期五

GitLab Multiple Vulnerabilities

Release Date: 13 Sep 2024

RISK: Medium Risk

TYPE: Servers - Other Servers

Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, spoofing, remote code execution, sensitive information disclosure and security restriction bypass on the targeted system.


Impact

  • Remote Code Execution
  • Denial of Service
  • Elevation of Privilege
  • Security Restriction Bypass
  • Information Disclosure
  • Spoofing

System / Technologies affected

  • GitLab Community Edition (CE) versions prior to 17.3.2, 17.2.5 and 17.1.7
  • GitLab Enterprise Edition (EE) versions prior to 17.3.2, 17.2.5 and 17.1.7

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

Microsoft Edge 遠端執行程式碼漏洞

Microsoft Edge 遠端執行程式碼漏洞 發佈日期: 2025年12月19日 風險: 中度風險 類型: 用戶端 - 瀏覽器 於微軟 Ed...