Bug#861870: gitlab: CVE-2017-8778

2017-05-05 Thread Tomasz Buchert
On 05/05/17 20:46, Tomasz Buchert wrote: > On 05/05/17 06:19, Salvatore Bonaccorso wrote: > > [...] > > Hi Salvatore, > the fix for this issue seems to be here: > https://gitlab.com/winniehell/gitlab-ce/commit/dd944bf14f4a0fd555db32d5833325fa459d9565 > > I'll try to apply it to stretch's gitlab. >

Bug#861870: gitlab: CVE-2017-8778

2017-05-05 Thread Tomasz Buchert
On 05/05/17 06:19, Salvatore Bonaccorso wrote: > [...] Hi Salvatore, the fix for this issue seems to be here: https://gitlab.com/winniehell/gitlab-ce/commit/dd944bf14f4a0fd555db32d5833325fa459d9565 I'll try to apply it to stretch's gitlab. Tomasz signature.asc Description: PGP signature

Bug#861870: gitlab: CVE-2017-8778

2017-05-04 Thread Salvatore Bonaccorso
Source: gitlab Version: 8.13.11+dfsg1-3 Severity: grave Tags: upstream security Forwarded: https://gitlab.com/gitlab-org/gitlab-ce/issues/27471 Hi, the following vulnerability was published for gitlab. Please note I was not able to verfy that affects back 8.13.11, and the merge request has restri