CVE-2020-13310

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/09/2020
Last modified:
16/09/2020

Description

A vulnerability was discovered in GitLab runner versions before 13.1.3, 13.2.3 and 13.3.1. It was possible to make the gitlab-runner process crash by sending malformed queries, resulting in a denial of service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* 13.1.3 (excluding)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* 13.2.0 (including) 13.2.3 (excluding)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* 13.3.0 (including) 13.3.1 (excluding)