First published: Thu May 09 2024(Updated: )
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.11 prior to 16.11.2. A problem with the processing logic for Google Chat Messages integration may lead to a regular expression DoS attack on the server.
Credit: cve@gitlab.com
Affected Software | Affected Version | How to fix |
---|---|---|
GitLab | >=16.11.0<16.11.2 | |
GitLab | >=16.11.0<16.11.2 |
Upgrade to versions 16.11.2 or above.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6688 has been classified as a moderate severity vulnerability due to its potential for denial of service attacks.
To remediate CVE-2023-6688, upgrade your GitLab installation to version 16.11.2 or later.
CVE-2023-6688 affects all GitLab CE/EE versions starting from 16.11.0 up to but not including 16.11.2.
CVE-2023-6688 may allow for a regular expression denial-of-service (DoS) attack on the server.
The vulnerability in CVE-2023-6688 is related to the processing logic in the Google Chat Messages integration.