First published: Wed Mar 24 2021(Updated: )
An issue was identified in GitLab EE 13.4 or later which leaked internal IP address via error messages.
Credit: cve@gitlab.com
Affected Software | Affected Version | How to fix |
---|---|---|
GitLab | >=13.4.0<13.5.6 | |
GitLab | >=13.6.0<13.6.4 | |
GitLab | >=13.7.0<13.7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-22169 has a medium severity level due to the potential exposure of internal IP addresses.
To fix CVE-2021-22169, upgrade GitLab to version 13.5.6 or later, or 13.6.4 or later, or 13.7.2 or later.
CVE-2021-22169 affects GitLab EE versions 13.4.0 to 13.5.6, 13.6.0 to 13.6.4, and 13.7.0 to 13.7.2.
CVE-2021-22169 leaks internal IP addresses via error messages.
There is no official workaround for CVE-2021-22169; upgrading is the recommended action.