CVE-2017-5637: Missing Authentication for Critical Function
(updated )
Two wchp
and wchc
commands are CPU intensive and could cause spike of CPU utilization on Apache ZooKeeper server if abused, which leads to the server unable to serve legitimate client requests.
References
Detect and mitigate CVE-2017-5637 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →