CVE-2020-14167: High severity atlassian jira vulnerability
The MessageBundleResource resource in Jira Server and Data Center before version 7.13.4, from 8.5.0 before 8.5.5, from 8.8.0 before 8.8.2, and from 8.9.0 before 8.9.1 allows remote attackers to impact the application's availability via an Denial of Service (DoS) vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-14167?
CVE-2020-14167 is a Denial of Service (DoS) vulnerability in Jira Server and Data Center before version 7.13.4, 8.5.0 before 8.5.5, 8.8.0 before 8.8.2, and 8.9.0 before 8.9.1.
How does CVE-2020-14167 impact Jira Server and Data Center?
CVE-2020-14167 allows remote attackers to impact the availability of Jira Server and Data Center through a Denial of Service (DoS) attack.
What is the severity of CVE-2020-14167?
CVE-2020-14167 has a severity value of 7.5, which is considered high.
Which versions of Jira Server and Data Center are affected by CVE-2020-14167?
CVE-2020-14167 affects Jira Server and Data Center versions before 7.13.4, 8.5.0 before 8.5.5, 8.8.0 before 8.8.2, and 8.9.0 before 8.9.1.
How can I fix CVE-2020-14167 in Jira Server and Data Center?
To fix CVE-2020-14167, it is recommended to upgrade Jira Server and Data Center to version 7.13.4, 8.5.5, 8.8.2, or 8.9.1, depending on the affected version.