First published: Fri Mar 13 2020(Updated: )
GitLab 8.11 through 12.8.1 allows a Denial of Service when using several features to recursively request eachother,
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GitLab | >=8.11.0<=12.8.1 | |
GitLab | >=8.11.0<=12.8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-10089 is classified as a Denial of Service vulnerability in GitLab.
To fix CVE-2020-10089, upgrade GitLab to version 12.8.2 or later.
CVE-2020-10089 affects GitLab versions from 8.11.0 up to and including 12.8.1.
CVE-2020-10089 involves several features in GitLab that can recursively request each other, leading to a denial of service.
CVE-2020-10089 affects both the GitLab Community Edition and Enterprise Edition.