From 568dec3b956d2af7b487b170f4c513ffd0b6aecc Mon Sep 17 00:00:00 2001 From: mfechner Date: Thu, 1 Nov 2018 19:06:56 +0000 Subject: Document gilab-ce vulnerability. Approved by: mentors (implicit) --- security/vuxml/vuln.xml | 28 ++++++++++++++++++++++++++++ 1 file changed, 28 insertions(+) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 95dc2ff437c7..486f9c4c7e6a 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,34 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + Gitlab -- SSRF in Kubernetes integration + + + gitlab-ce + 11.4.011.4.4 + 11.3.011.3.9 + 11.0.011.2.8 + + + + +

SO-AND-SO reports:

+
+

SSRF in Kubernetes integration

+
+ +
+ + https://about.gitlab.com/2018/11/01/critical-security-release-gitlab-11-dot-4-dot-4-released/ + CVE-2018-18843 + + + 2018-11-01 + 2018-11-01 + +
+ Loofah -- XSS vulnerability -- cgit