CVE-2023-5825
06.11.2023, 11:15
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. A low-privileged attacker can point a CI/CD Component to an incorrect path and cause the server to exhaust all available memory through an infinite loop and cause Denial of Service.
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 16.2.0 ≤ 𝑥 < 16.3.6 |
gitlab | gitlab | 16.2.0 ≤ 𝑥 < 16.3.6 |
gitlab | gitlab | 16.4.0 ≤ 𝑥 < 16.4.2 |
gitlab | gitlab | 16.4.0 ≤ 𝑥 < 16.4.2 |
gitlab | gitlab | 16.5.0 |
gitlab | gitlab | 16.5.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration