CVE-2019-19313: High severity gitlab vulnerability
Published Jan 5, 2020
·Updated
GitLab EE 12.3 through 12.5, 12.4.3, and 12.3.6 allows Denial of Service. Certain characters were making it impossible to create, edit, or view issues and commits.
Affected Software
3 affected components
GitLab GitLab>=12.3.0<12.3.8
GitLab GitLab>=12.4.0<12.4.5
GitLab GitLab>=12.5.0<12.5.2
Event History
Jan 5, 2020
CVE Published
via MITRE·09:42 PM
Data Sourced
via MITRE·09:42 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19313?
CVE-2019-19313 has been classified as a Denial of Service vulnerability.
2
How do I fix CVE-2019-19313?
To resolve CVE-2019-19313, upgrade GitLab to version 12.5.1 or later.
3
Which versions of GitLab are affected by CVE-2019-19313?
CVE-2019-19313 affects GitLab versions 12.3 through 12.5, as well as specific versions 12.4.3 and 12.3.6.
4
What impact does CVE-2019-19313 have on GitLab users?
CVE-2019-19313 prevents users from creating, editing, or viewing issues and commits.
5
Is CVE-2019-19313 a critical vulnerability?
While not classified as critical, CVE-2019-19313 can significantly disrupt functionality in affected GitLab versions.