CVE-2012-0785
24.02.2020, 17:15
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote attackers to cause a considerable CPU load, aka "the Hash DoS attack."Enginsight
| Vendor | Product | Version |
|---|---|---|
| cloudbees | jenkins | 1.400.0 ≤ 𝑥 < 1.400.0.11 |
| cloudbees | jenkins | 1.424.0 ≤ 𝑥 < 1.424.2.1 |
| jenkins | jenkins | 𝑥 < 1.424.2 |
| jenkins | jenkins | 𝑥 < 1.447 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| jenkins |
| ||||||||||||||||
| jenkins-executable-war |
| ||||||||||||||||
| jenkins-winstone |
|
References