[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.9] jenkins: Multiple vulnerabilities (CVE-2019-1003049, CVE-2019-1003050)

ID: oval:org.secpod.oval:def:1801456Date: (C)2019-06-21   (M)2023-11-02
Class: PATCHFamily: unix




CVE-2019-1003049: Jenkins accepted cached legacy CLI authentication¶ Users who cached their CLI authentication before Jenkins was updated to 2.150.2 and newer, or 2.160 and newer, would remain authenticated in Jenkins 2.171 and earlier and Jenkins LTS 2.164.1 and earlier, because the fix for CVE-2019-1003004 in these releases did not reject existing remoting-based CLI authentication caches. Fixed In Version:¶ jenkins 2.172, jenkins 2.164.2

Platform:
Alpine Linux 3.9
Product:
jenkins
Reference:
10330
CVE-2019-1003049
CVE-2019-1003050
CVE-2019-1003004
CVE    3
CVE-2019-1003050
CVE-2019-1003004
CVE-2019-1003049

© SecPod Technologies