First published: Wed Apr 05 2023(Updated: )
A denial of service condition exists in the Prometheus server bundled with GitLab affecting all versions from 11.10 to 15.8.5, 15.9 to 15.9.4 and 15.10 to 15.10.1.
Credit: cve@gitlab.com
Affected Software | Affected Version | How to fix |
---|---|---|
GitLab | >=11.10.0<15.8.5 | |
GitLab | >=11.10.0<15.8.5 | |
GitLab | >=15.9.0<15.9.4 | |
GitLab | >=15.9.0<15.9.4 | |
GitLab | =15.10.0 | |
GitLab | =15.10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-1733 is classified as a denial of service vulnerability affecting multiple versions of GitLab.
To address CVE-2023-1733, upgrade GitLab to a version beyond 15.10.1, 15.9.4, and 15.8.5.
CVE-2023-1733 affects GitLab versions from 11.10 to 15.8.5, 15.9 to 15.9.4, and 15.10 to 15.10.1.
The potential impact of CVE-2023-1733 includes disruption of service due to the denial of service condition.
There is no documented workaround for CVE-2023-1733, and it is recommended to upgrade to the latest version of GitLab.