CVE-2021-39893: High severity GitLab GitLab vulnerability
Published Oct 5, 2021
·Updated
A potential DOS vulnerability was discovered in GitLab starting with version 9.1 that allowed parsing files without authorisation.
Affected Software
6 affected components
GitLab GitLab>=9.1.0<14.1.7
GitLab GitLab>=9.1.0<14.1.7
GitLab GitLab>=14.2.0<14.2.5
GitLab GitLab>=14.2.0<14.2.5
GitLab GitLab>=14.3.0<14.3.1
GitLab GitLab>=14.3.0<14.3.1
Event History
Oct 5, 2021
CVE Published
via MITRE·12:18 PM
Data Sourced
via MITRE·12:18 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-39893?
CVE-2021-39893 is a potential Denial of Service (DoS) vulnerability discovered in GitLab starting with version 9.1 that allows parsing files without authorization.
2
Which versions of GitLab are affected by CVE-2021-39893?
GitLab versions between 9.1.0 and 14.1.7, 14.2.0 and 14.2.5, and 14.3.0 and 14.3.1 are affected by CVE-2021-39893.
3
What is the severity of CVE-2021-39893?
CVE-2021-39893 has a severity rating of high, with a value of 7.5.
4
How can I fix CVE-2021-39893?
To fix CVE-2021-39893, it is recommended to upgrade GitLab to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2021-39893?
You can find more information about CVE-2021-39893 on the GitLab official website.