Adding CRIME Vulnerability to Security doc
Edited by 🤖 GitLab Bot 🤖
Merge request reports
Activity
@jacobvosmaer knows more than me, maybe he can give his insights.
Please see what I wrote in https://gitlab.com/gitlab-org/gitlab-ce/issues/4088#note_2955917
@jacobvosmaer As far as I understand this vulnerability only checks if SPDY is enabled and if it's advertised with a version lower than 4. Nessus doesn't executive an attack. This of course implies that it could be vulnerable not that it is. This is what I understand from their report though.
Added 128 commits:
- 75553b12...27859f7e - 124 commits from branch
master
- e967748a - Adding CRIME vulnerability to security docs
- ad975c72 - Adding CRIME link to security README [ci skip]
- 8403694f - Changing docs to How we manage CRIME
- bc7a12f2 - Changing title from index and fixing MC
Toggle commit list- 75553b12...27859f7e - 124 commits from branch
Reassigned to @axil
mentioned in issue #4088 (closed)
Added 220 commits:
-
a3de4665...ed777c7b - 218 commits from branch
master
- 05f8c585 - Merge branch 'master' into adding_crime_security
- e081edc1 - Clean up CRIME security doc [ci skip]
-
a3de4665...ed777c7b - 218 commits from branch
mentioned in commit 9dc1a53b
mentioned in merge request !14289 (merged)
added typemaintenance label
Please register or sign in to reply