-
Bug
-
Resolution: Fixed
-
Low (View bug fix roadmap)
-
7.6.15, 8.5.4, 7.13.13, 8.8.1
-
7.06
-
Severity 1 - Critical
-
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in Dashboard & Gadgets.
Affected versions:
- version < 7.13.14
- 8.5.0 ≤ version < 8.5.5
- 8.8.0 ≤ version < 8.8.2
- 8.9.0 ≤ version < 8.9.1
Fixed versions:
- 7.13.14
- 8.5.5
- 8.8.2
- 8.9.1
- 8.10.0
[JRASERVER-71197] Denial of service in Dashboard & Gadgets - CVE-2020-14167
Remote Link | New: This issue links to "Page (Confluence)" [ 509305 ] |
Remote Link | New: This issue links to "Page (Confluence)" [ 500451 ] |
Labels | Original: CVE-2020-14167 advisory advisory-to-release bugbounty cvss-high denial-of-service dos monsters security | New: CVE-2020-14167 advisory advisory-released bugbounty cvss-high denial-of-service dos monsters security |
Security | Original: Atlassian Staff [ 10750 ] |
Resolution | New: Fixed [ 1 ] | |
Status | Original: Needs Triage [ 10030 ] | New: Closed [ 6 ] |
Summary | Original: Denial of service in Dashboard & Gadgets - CVE-PENDING | New: Denial of service in Dashboard & Gadgets - CVE-2020-14167 |
Labels | Original: advisory advisory-to-release bugbounty cvss-high denial-of-service dos monsters security | New: CVE-2020-14167 advisory advisory-to-release bugbounty cvss-high denial-of-service dos monsters security |
Description |
Original:
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in Dashboard & Gadgets. *Affected versions:* * version < 7.13.14 * 7.14.0 ≤ version < 8.5.5 * 8.6.0 ≤ version < 8.8.2 * 8.9.0 ≤ version < 8.9.1 *Fixed versions:* * 7.13.14 * 8.5.5 * 8.8.2 * 8.9.1 * 8.10.0 |
New:
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in Dashboard & Gadgets.
*Affected versions:* * version < 7.13.14 * 8.5.0 ≤ version < 8.5.5 * 8.8.0 ≤ version < 8.8.2 * 8.9.0 ≤ version < 8.9.1 *Fixed versions:* * 7.13.14 * 8.5.5 * 8.8.2 * 8.9.1 * 8.10.0 |
is this fixed in Jira 8.5.8?