Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Denis Shvedchenko

Researcher fromSphere, Inc.
#41382of 53,632
6.5Total CVSS
Vulnerabilities · 1
PT-2018-9586
6.5
2018-12-10
Cloudbees · Jenkins · CVE-2018-1000864
Name of the Vulnerable Software and Affected Versions: Jenkins versions 2.153 and earlier Jenkins LTS versions 2.138.3 and earlier Description: A denial of service issue exists that allows attackers with Overall/Read permission to cause a request handling thread to enter an infinite loop, potentially due to an issue in `CronTab.java`. Recommendations: For Jenkins versions 2.153 and earlier, update to a version later than 2.153 to resolve the issue. For Jenkins LTS versions 2.138.3 and earlier, update to a version later than 2.138.3 to resolve the issue.