First published: Tue Mar 10 2020(Updated: )
An issue was discovered in GitLab Community and Enterprise Edition 11.11 through 12.0.2. When an admin enabled one of the service templates, it was triggering an action that leads to resource depletion. It allows Uncontrolled Resource Consumption.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GitLab | >=11.11<=12.0.2 | |
GitLab | >=11.11<=12.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-13007 is considered a high severity vulnerability due to its potential for resource depletion.
To fix CVE-2019-13007, update to GitLab Community or Enterprise Edition version 12.0.3 or later.
CVE-2019-13007 affects users of GitLab Community and Enterprise Editions from version 11.11 to 12.0.2.
CVE-2019-13007 is classified as a resource depletion vulnerability leading to uncontrolled resource consumption.
CVE-2019-13007 was disclosed in July 2019 with the release of GitLab 12.0.3.