A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 While cloning an issue with special crafted content added to the description could have been used to trigger high CPU usage.
References
Link | Resource |
---|---|
https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3283.json | Vendor Advisory |
https://gitlab.com/gitlab-org/gitlab/-/issues/361982 | Exploit Issue Tracking Vendor Advisory |
https://hackerone.com/reports/1543718 | Permissions Required Third Party Advisory |
https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3283.json | Vendor Advisory |
https://gitlab.com/gitlab-org/gitlab/-/issues/361982 | Exploit Issue Tracking Vendor Advisory |
https://hackerone.com/reports/1543718 | Permissions Required Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:19
Type | Values Removed | Values Added |
---|---|---|
References | () https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-3283.json - Vendor Advisory | |
References | () https://gitlab.com/gitlab-org/gitlab/-/issues/361982 - Exploit, Issue Tracking, Vendor Advisory | |
References | () https://hackerone.com/reports/1543718 - Permissions Required, Third Party Advisory |
Information
Published : 2022-10-17 16:15
Updated : 2024-11-21 07:19
NVD link : CVE-2022-3283
Mitre link : CVE-2022-3283
CVE.ORG link : CVE-2022-3283
JSON object : View
Products Affected
gitlab
- gitlab
CWE
CWE-400
Uncontrolled Resource Consumption