cve/2023/CVE-2023-5825.md
2024-05-25 21:48:12 +02:00

901 B

CVE-2023-5825

Description

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. A low-privileged attacker can point a CI/CD Component to an incorrect path and cause the server to exhaust all available memory through an infinite loop and cause Denial of Service.

POC

Reference

No PoCs from references.

Github