Security features bypass in Gitlab Community Edition and GitLab Enterprise Edition - CVE-2023-5512

 

Security features bypass in Gitlab Community Edition and GitLab Enterprise Edition - CVE-2023-5512

Published: December 14, 2023


Vulnerability identifier: #VU84418
CSH Severity: Medium
CVSS v4: 5.7 [CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:A/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-5512
CWE-ID: CWE-254
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.

The vulnerability exists due to the omission of double encoding in file names which facilitates the creation of repositories with malicious content. A remote user can use specific HTML encoding for file names leading for incorrect representation in the UI.


Affected software

Gitlab Community Edition
GitLab Enterprise Edition

How to mitigate CVE-2023-5512

Install updates from vendor's website.

Gitlab Community Edition - addressed in versions 16.4.4, 16.5.4, 16.6.2
GitLab Enterprise Edition - addressed in versions 16.4.4, 16.5.4, 16.6.2

External References

Related Security Bulletins