-
Public Security Vulnerability
-
Resolution: Fixed
-
Low (View bug fix roadmap)
-
8.5.17, 8.13.9, 8.18.1
-
None
-
4.3
-
Medium
-
CVE-2021-39116
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the GIF Image Reader component.
The affected versions are before version 8.13.14, and from version 8.14.0 before 8.19.0.
Affected versions:
- version < 8.13.14
- 8.14.0 ≤ version < 8.19.0
Fixed versions:
- 8.13.14
- 8.19.0
[JRASERVER-72738] Denial of Service when reading particularly-crafted GIF files - CVE-2021-39116
Description |
Original:
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the GIF Image Reader component.
The affected versions are before version 8.19.0. **Affected versions:** * version < 8.19.0 **Fixed versions:** * 8.19.0 |
New:
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the GIF Image Reader component.
The affected versions are before version 8.13.14, and from version 8.14.0 before 8.19.0. *Affected versions:* * version < 8.13.14 * 8.14.0 ≤ version < 8.19.0 *Fixed versions:* * 8.13.14 * 8.19.0 |
Fix Version/s | New: 8.13.14 [ 97812 ] |
Remote Link | New: This issue links to "Page (Confluence)" [ 592028 ] |
Remote Link | New: This issue links to "Page (Confluence)" [ 589128 ] |
CVE ID | New: CVE-2021-39116 |
Version 8.13.14 has been published, and contains a fix for the 8.13.x minor series.
As a result, the affected versions range has changed. Please check the updated description for details.
The change will be propagated through to Mitre's CVE listings soon.