GitLab Denial of Service Vulnerability Affects All Versions
CVE-2024-8041
Key Information:
Badges
What is CVE-2024-8041?
A Denial of Service (DoS) vulnerability has been identified in GitLab CE/EE, impacting all versions before 17.1.6, 17.2 before 17.2.4, and 17.3 before 17.3.1. This vulnerability arises when a maliciously crafted repository is imported using the GitHub importer, potentially leading to service disruptions. The issue has been tracked in GitLab's issue tracker and detailed in a HackerOne bug bounty report.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
GitLab 0 < 17.1.6
GitLab 17.2 < 17.2.4
GitLab 17.3 < 17.3.1
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V3.1
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published