CVE-2019-20142: Medium severity gitlab vulnerability
Published Jan 13, 2020
·Updated
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 12.3 through 12.6.1. It allows Denial of Service.
Affected Software
2 affected components
GitLab GitLab>=12.3.0<=12.6.1
GitLab GitLab>=12.3.0<=12.6.1
Event History
Jan 13, 2020
CVE Published
via MITRE·08:04 PM
Data Sourced
via MITRE·08:04 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20142?
CVE-2019-20142 is classified as a Denial of Service vulnerability.
2
How do I fix CVE-2019-20142?
To fix CVE-2019-20142, upgrade GitLab Community Edition or Enterprise Edition to version 12.6.2 or later.
3
Which versions of GitLab are affected by CVE-2019-20142?
CVE-2019-20142 affects GitLab versions 12.3 through 12.6.1.
4
What types of GitLab installations are impacted by CVE-2019-20142?
Both GitLab Community Edition and Enterprise Edition installations are impacted by CVE-2019-20142.
5
Is there any workaround for CVE-2019-20142?
No specific workaround is recommended for CVE-2019-20142; the best mitigation is to update to a secure version.