GitLab Linode Appears to be Outbound DDoSing

Linode Staff

I noticed recently that my GitLab Linode may be outbound DDoSing. I've made no recent adjustments to my Linode. Why is this occurring?

1 Reply

Digging into this, it appears a recent critical vulnerability has occurred over on GitLab’s side of things as of November 4th, 2021. This blog post from GitLab provides some additional context:


You’ll want to update your GitLab server as soon as possible to alleviate any potential outbound DDoSing attacks originating from your Linode. Within the link above, they provide a few fixed versions of GitLab, as well as a hotpatch if you can’t upgrade at the moment.

As with most things, in the event you need to update or upgrade a service on your Linode, we recommend you do your due diligence to ensure these updates don’t unnecessarily bork your setup. I’d recommend having some kind of backup on hand, just to be safe.

Additionally, it may not hurt to perform a ClamAV or RKHunter malware scan, to double check nothing was maliciously added from this vulnerability.

Hope this helps!

Reply

Please enter an answer
Tips:

You can mention users to notify them: @username

You can use Markdown to format your question. For more examples see the Markdown Cheatsheet.

> I’m a blockquote.

I’m a blockquote.

[I'm a link] (https://www.google.com)

I'm a link

**I am bold** I am bold

*I am italicized* I am italicized

Community Code of Conduct