HTTP: GitLab Community and Enterprise Edition AutolinkFilter Regex Denial of Service

This signature detects attempts to exploit a known vulnerability against GitLab Community and Enterprise Edition. A successful attack can result in a denial-of-service condition.

Extended Description

An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.14 before 16.0.8, all versions starting from 16.1 before 16.1.3, all versions starting from 16.2 before 16.2.2. A Regular Expression Denial of Service was possible via sending crafted payloads which use AutolinkFilter to the preview_markdown endpoint.

Affected Products

Gitlab gitlab

Short Name
HTTP:DOS:GIT-COM-INT-AUTOLNK
Severity
Major
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
AutolinkFilter CVE-2023-3364 Community Denial Edition Enterprise GitLab Regex Service and of
Release Date
10/17/2023
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

Sigpack Version
3693
False Positive
Rarely
Vendors

Gitlab

Found a potential security threat?