CVE-2022-2592

CVE-2022-2592

A lack of length validation in Snippet descriptions in GitLab CE/EE affecting all versions prior to 15.1.6, 15.2 prior to 15.2.4 and 15.3 prior to 15.3.2 allows an authenticated attacker to create a maliciously large Snippet which when requested with or without authentication places excessive load on the server, potential leading to Denial of Service.

Source: CVE-2022-2592

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다