Linux Distros Unpatched Vulnerability : CVE-2023-2478
Discription

image
The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15.9.7, all versions starting from 15.10 before 15.10.6, all versions starting from 15.11 before 15.11.2. Under certain conditions, a malicious unauthorized GitLab user may use a GraphQL endpoint to attach a malicious runner to any project. (CVE-2023-2478) Note that Nessus relies on the presence of the package as reported by the vendor. File data…Read More

Back to Main

Subscribe for the latest news: