-
Bug
-
Resolution: Fixed
-
Low
-
4.7.3, 4.8.1, 4.8.4
-
Severity 3 - Minor
-
Affected versions of Atlassian Crucible allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the file upload request feature of code reviews.
The affected versions are before version 4.7.4, and from version 4.8.0 before 4.8.5.
Affected versions:
- version < 4.7.4
- 4.8.0 ≤ version < 4.8.5
Fixed versions:
- 4.7.4
- 4.8.5
- 4.9.0
- mentioned in
-
Page Loading...
- relates to
-
VULN-196453 Loading...
[CRUC-8505] Sending multiple concurrent file upload requests will permanently break a review - CVE-2020-29447
Remote Link | Original: This issue links to "VULN-196453 (Atlassian Security Jira)" [ 519708 ] | New: This issue links to "VULN-196453 (ASEC/J)" [ 519708 ] |
Labels | Original: CVE-2020-29447 advisory impossible-to-resolve-in-vf release-48x release-490 security security-imported | New: CVE-2020-29447 advisory impossible-to-resolve-in-vf release-48x security security-imported |
Labels | Original: CVE-2020-29447 advisory impossible-to-resolve-in-vf release-490 security security-imported | New: CVE-2020-29447 advisory impossible-to-resolve-in-vf release-48x release-490 security security-imported |
Labels | Original: CVE-2020-29447 advisory impossible-to-resolve-in-vf security security-imported | New: CVE-2020-29447 advisory impossible-to-resolve-in-vf release-490 security security-imported |
Remote Link | New: This issue links to "Page (Confluence)" [ 538016 ] |
Fix Version/s | Original: 4.9.0 [ 90696 ] |
Security | Original: Reporter and Atlassian Staff [ 10751 ] |
Labels | Original: advisory impossible-to-resolve-in-vf security security-imported | New: CVE-2020-29447 advisory impossible-to-resolve-in-vf security security-imported |
Summary | Original: Sending multiple concurrent file upload requests will permanently break a review - CVE-PENDING | New: Sending multiple concurrent file upload requests will permanently break a review - CVE-2020-29447 |
Labels | Original: advisory security security-imported | New: advisory impossible-to-resolve-in-vf security security-imported |