Количество 4
Количество 4
CVE-2020-2101
Jenkins 2.218 and earlier, LTS 2.204.1 and earlier did not use a constant-time comparison function for validating connection secrets, which could potentially allow an attacker to use a timing attack to obtain this secret.
CVE-2020-2101
Jenkins 2.218 and earlier, LTS 2.204.1 and earlier did not use a constant-time comparison function for validating connection secrets, which could potentially allow an attacker to use a timing attack to obtain this secret.
CVE-2020-2101
Jenkins 2.218 and earlier, LTS 2.204.1 and earlier did not use a const ...
GHSA-w7jr-wqw6-54xc
Non-constant time comparison of inbound TCP agent connection secret
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-2101 Jenkins 2.218 and earlier, LTS 2.204.1 and earlier did not use a constant-time comparison function for validating connection secrets, which could potentially allow an attacker to use a timing attack to obtain this secret. | CVSS3: 5.3 | 2% Низкий | около 6 лет назад | |
CVE-2020-2101 Jenkins 2.218 and earlier, LTS 2.204.1 and earlier did not use a constant-time comparison function for validating connection secrets, which could potentially allow an attacker to use a timing attack to obtain this secret. | CVSS3: 5.3 | 2% Низкий | около 6 лет назад | |
CVE-2020-2101 Jenkins 2.218 and earlier, LTS 2.204.1 and earlier did not use a const ... | CVSS3: 5.3 | 2% Низкий | около 6 лет назад | |
GHSA-w7jr-wqw6-54xc Non-constant time comparison of inbound TCP agent connection secret | CVSS3: 5.3 | 2% Низкий | больше 3 лет назад |
Уязвимостей на страницу