Starting with version 13.7 the Gitlab CE/EE editions were affected by a security issue related to the validation of the certificates for the Fortinet OTP that could result in authentication issues.
The product does not validate, or incorrectly validates, a certificate.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gitlab | Gitlab | * | 13.6.7 (excluding) |
Gitlab | Gitlab | 13.7.0 (including) | 13.7.7 (excluding) |
Gitlab | Gitlab | 13.8.0 (including) | 13.8.4 (excluding) |
Gitlab | Ubuntu | esm-apps/xenial | * |
Gitlab | Ubuntu | xenial | * |