/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-2800

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-2800

Severity

6.5

Medium

CVSS V3

Summary

Uncontrolled Resource Consumption in GitLab

Description

ReDoS flaw in RefMatcher when matching branch names using wildcards in GitLab EE/CE affecting all versions from 11.3 prior to 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2 allows denial of service via Regex backtracking.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing