CVE-2019-20146: Medium severity gitlab vulnerability
Published Jan 13, 2020
·Updated
An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 11.0 through 12.6. It allows Uncontrolled Resource Consumption.
Affected Software
2 affected components
GitLab GitLab>=11.0.0<=12.6.0
GitLab GitLab>=11.0.0<=12.6.0
Event History
Jan 13, 2020
CVE Published
via MITRE·07:59 PM
Data Sourced
via MITRE·07:59 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20146?
The severity of CVE-2019-20146 is high due to the potential for Uncontrolled Resource Consumption.
2
How do I fix CVE-2019-20146?
To fix CVE-2019-20146, upgrade GitLab to version 12.6.1 or later.
3
What type of vulnerability is CVE-2019-20146?
CVE-2019-20146 is classified as an Uncontrolled Resource Consumption vulnerability.
4
Which versions of GitLab are affected by CVE-2019-20146?
CVE-2019-20146 affects GitLab Community Edition and Enterprise Edition versions from 11.0.0 to 12.6.0.
5
What are the implications of CVE-2019-20146?
The implications of CVE-2019-20146 include potential denial of service due to resource exhaustion.