A vulnerability was discovered in GitLab runner versions before 13.1.3, 13.2.3 and 13.3.1. It was possible to make the gitlab-runner process crash by sending malformed queries, resulting in a denial of service.
References
Link | Resource |
---|---|
https://gitlab.com/gitlab-org/cves/-/blob/master/2020/CVE-2020-13310.json | Third Party Advisory |
https://gitlab.com/gitlab-org/gitlab-runner/-/issues/25857 | Broken Link |
https://gitlab.com/gitlab-org/gitlab-runner/-/issues/26819 | Broken Link |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: GitLab
Published: 2020-09-14T21:33:50
Updated: 2020-09-14T21:33:50
Reserved: 2020-05-21T00:00:00
Link: CVE-2020-13310
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-09-14T22:15:11.347
Modified: 2020-09-16T20:01:56.190
Link: CVE-2020-13310
JSON object: View
Redhat Information
No data.
CWE