CVE-2021-39939 log
| Source |
|
| Severity | Medium |
| Remote | Yes |
| Type | Incorrect calculation |
| Description | GitLab Runner before version 14.5.2 was susceptible to Golang security issue CVE-2021-44717: don’t close fd 0 on ForkExec error, which could result in misdirected I/O such as writing network traffic intended for one connection to a different connection, or content intended for one file to a different one. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-2619 | gitlab-runner | 14.5.0-1 | 14.5.2-1 | Medium | Fixed |
| References |
|---|
https://about.gitlab.com/releases/2021/12/10/security-release-gitlab-runner-14-5-2-released/ |