An issue was discovered in GitLab Enterprise Edition 8.3 through 12.0.2. The color codes decoder was vulnerable to a resource depletion attack if specific formats were used. It allows Uncontrolled Resource Consumption.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Gitlab | Gitlab | 8.3.0 (including) | 12.0.2 (including) |
| Gitlab | Ubuntu | esm-apps/xenial | * |
| Gitlab | Ubuntu | upstream | * |
| Gitlab | Ubuntu | xenial | * |