CVE-2020-13295
10.08.2020, 14:15
For GitLab Runner before 13.0.12, 13.1.6, 13.2.3, by replacing dockerd with a malicious server, the Shared Runner is susceptible to SSRF.
| Vendor | Product | Version |
|---|---|---|
| gitlab | runner | 1.0 ≤ 𝑥 < 13.0.12 |
| gitlab | runner | 13.1 ≤ 𝑥 < 13.1.6 |
| gitlab | runner | 13.2 ≤ 𝑥 < 13.2.3 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References