Описание
Hash collision attack vulnerability in Jenkins
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote attackers to cause a considerable CPU load, aka "the Hash DoS attack."
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2012-0785
- https://access.redhat.com/security/cve/cve-2012-0785
- https://jenkins.io/security/advisory/2012-01-12
- https://security-tracker.debian.org/tracker/CVE-2012-0785
- https://www.cloudbees.com/jenkins-security-advisory-2012-01-12
- http://www.openwall.com/lists/oss-security/2012/01/20/8
Пакеты
org.jenkins-ci.main:jenkins-core
>= 1.425, < 1.447
1.447
org.jenkins-ci.main:jenkins-core
< 1.424.2
1.424.2
Связанные уязвимости
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote attackers to cause a considerable CPU load, aka "the Hash DoS attack."
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote attackers to cause a considerable CPU load, aka "the Hash DoS attack."
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins L ...