PT-2021-15242 · Github · Github Enterprise Server
Published
2021-09-24
·
Updated
2022-10-25
·
CVE-2021-22869
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
GitHub Enterprise Server versions 3.0.0 through 3.0.15
GitHub Enterprise Server versions 3.1.0 through 3.1.7
Description
An improper access control issue in GitHub Enterprise Server allowed a workflow job to execute in a self-hosted runner group it should not have had access to, affecting customers using self-hosted runner groups for access control. A repository with access to one enterprise runner group could access all of the enterprise runner groups within the organization due to improper authentication checks during the request, potentially causing code to be run unintentionally by the incorrect runner group.
Recommendations
For GitHub Enterprise Server versions 3.0.0 through 3.0.15, update to version 3.0.16 or later to resolve the issue.
For GitHub Enterprise Server versions 3.1.0 through 3.1.7, update to version 3.1.8 or later to resolve the issue.
Fix
Improper Authentication
Exposure of Resource to Wrong Sphere
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Github Enterprise Server