CVE-2019-19258: Medium severity gitlab vulnerability
Published Jan 3, 2020
·Updated
GitLab Enterprise Edition (EE) 10.8 and later through 12.5 has Incorrect Access Control.
Affected Software
1 affected component
GitLab GitLab>=10.8.0<12.5.1
Event History
Jan 3, 2020
CVE Published
via MITRE·04:28 PM
Data Sourced
via MITRE·04:28 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19258?
CVE-2019-19258 has a medium severity rating due to its impact on access control in GitLab.
2
How do I fix CVE-2019-19258?
To fix CVE-2019-19258, you should upgrade GitLab Enterprise Edition to a version greater than 12.5.1.
3
Which versions of GitLab are affected by CVE-2019-19258?
CVE-2019-19258 affects GitLab Enterprise Edition from versions 10.8.0 up to and including 12.5.1.
4
What is the nature of the issue in CVE-2019-19258?
CVE-2019-19258 involves incorrect access control, allowing unauthorized access to certain features or data.
5
Is there a patch available for CVE-2019-19258?
Yes, a patch is included in the fixed version of GitLab, specifically versions after 12.5.1.