CVE-2021-38388: High severity linecorp Central Dogma vulnerability
Published Sep 8, 2021
·Updated
Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the authorization of the project.
Affected Software
1 affected component
linecorp Central Dogma>0.17.0<0.51.1
Remediation
Patch Available
Event History
Sep 8, 2021
CVE Published
via MITRE·05:50 PM
Data Sourced
via MITRE·05:50 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-38388?
CVE-2021-38388 is a vulnerability in Central Dogma that allows privilege escalation with mirroring to the internal dogma repository.
2
How does CVE-2021-38388 work?
CVE-2021-38388 exploits a file managing the authorization of the project in the internal dogma repository.
3
Is my version of Central Dogma affected by CVE-2021-38388?
If your version is between 0.17.0 and 0.51.1 (exclusive), it is affected by CVE-2021-38388.
4
What is the severity of CVE-2021-38388?
CVE-2021-38388 has a severity score of 8.8 (high).
5
How can I fix CVE-2021-38388?
To fix CVE-2021-38388, you should update your Central Dogma version to a version above 0.51.1.