Lucene search

K
cvelistGitLabCVELIST:CVE-2022-2251
HistoryJan 17, 2023 - 12:00 a.m.

CVE-2022-2251

2023-01-1700:00:00
GitLab
www.cve.org
5
gitlab runner
command execution
cve-2022-2251
sanitization

CVSS3

4.8

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:N

AI Score

8

Confidence

High

EPSS

0.005

Percentile

77.8%

Improper sanitization of branch names in GitLab Runner affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows a user who creates a branch with a specially crafted name and gets another user to trigger a pipeline to execute commands in the runner as that other user.

CNA Affected

[
  {
    "vendor": "GitLab",
    "product": "GitLab Runner",
    "versions": [
      {
        "version": "<15.3.5",
        "status": "affected"
      },
      {
        "version": ">=15.4, <15.4.4",
        "status": "affected"
      },
      {
        "version": ">=15.5, <15.5.2",
        "status": "affected"
      }
    ]
  }
]

CVSS3

4.8

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:N

AI Score

8

Confidence

High

EPSS

0.005

Percentile

77.8%