An issue was discovered in GitLab Enterprise Edition 8.3 through 12.0.2. The color codes decoder was vulnerable to a resource depletion attack if specific formats were used. It allows Uncontrolled Resource Consumption.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gitlab | Gitlab | 8.3.0 (including) | 12.0.2 (including) |
Gitlab | Ubuntu | esm-apps/xenial | * |
Gitlab | Ubuntu | upstream | * |
Gitlab | Ubuntu | xenial | * |