Rewterz
New ConfusedFunction Vulnerability Uncovered in Google Cloud Platform
July 26, 2024
Rewterz
SideWinder APT Group aka Rattlesnake – Active IOCs
July 26, 2024

Multiple GitHub Enterprise Server Vulnerabilities

Severity

High

Analysis Summary

CVE-2024-5816 CVSS:7.5

GitHub Enterprise Server could allow a remote attacker to bypass security restrictions, caused by an incorrect authorization vulnerability. By sending a specially crafted request, an attacker could exploit this vulnerability to allow a suspended GitHub App to retain access to the repository.

CVE-2024-5795 CVSS:7.7

GitHub Enterprise Server are vulnerable to a denial of service, caused by uncontrolled resource consumption. By sending a large payload to the Git server, an <remote> attacker could exploit this vulnerability to cause unbounded resource exhaustion.

CVE-2024-5746 CVSS:7.6

GitHub Enterprise Server is vulnerable to server-side request forgery. A remote authenticated attacker could exploit this vulnerability to conduct an SSRF attack, allowing the attacker to gain arbitrary code execution capability on the GitHub Enterprise Server instance.

CVE-2024-4985 CVSS:9.8

GitHub Enterprise Server could allow a remote attacker to bypass security restrictions, caused by a flaw when using SAML single sign-on (SSO) authentication with the optional encrypted assertions feature. By using a specially crafted SAML response, an attacker could exploit this vulnerability to provision and/or gain access to a user with site administrator privileges.

Impact

  • Denial of Service
  • Security Bypass
  • Gain Access

Indicators of Compromise

CVE

  • CVE-2024-5816
  • CVE-2024-5795
  • CVE-2024-5746
  • CVE-2024-4985

Affected Vendors

GitHub

Affected Products

  • GitHub Enterprise Server 3.11.0
  • GitHub Enterprise Server 3.10.0
  • GitHub Enterprise Server 3.12.0
  • GitHub Enterprise Server 3.9.0
  • GitHub Enterprise Server 3.9.16
  • GitHub Enterprise Server 3.10.13
  • GitHub Enterprise Server 3.9.15

Remediation

Upgrade to the latest version of GitHub Enterprise Server, available from the GitHub Website.

CVE-2024-5816

CVE-2024-5795

CVE-2024-5746

CVE-2024-4985