Description
DoS in KAS in GitLab CE/EE affecting all versions from 16.10.0 prior to 16.10.6 and 16.11.0 prior to 16.11.3 allows an attacker to crash KAS via crafted gRPC requests.
No analysis available yet.
Remediation
Vendor Solution
Upgrade to versions 16.10.6, 16.11.3 or above.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47151 | DoS in KAS in GitLab CE/EE affecting all versions from 16.10.0 prior to 16.10.6 and 16.11.0 prior to 16.11.3 allows an attacker to crash KAS via crafted gRPC requests. |
References
| Link | Providers |
|---|---|
| https://gitlab.com/gitlab-org/gitlab/-/issues/464143 |
|
History
Thu, 09 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 30 Aug 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-400 |
Fri, 16 Aug 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gitlab
Gitlab gitlab |
|
| Weaknesses | CWE-754 | |
| CPEs | cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gitlab
Gitlab gitlab |
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2025-01-09T21:40:26.611Z
Reserved: 2024-05-29T12:30:45.333Z
Link: CVE-2024-5469
Updated: 2024-08-01T21:11:12.757Z
Status : Modified
Published: 2024-06-14T04:15:43.120
Modified: 2024-11-21T09:47:44.633
Link: CVE-2024-5469
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD