jenkins remote code execution vulnerability: CLI has been disabled on ovirt jenkins until further notice

8 Nov
2015
8 Nov
'15
10:25 a.m.
hi all. Sorry for the late response, but following the discovered vulnerability [1], the CLI service on jenkins.ovirt.org has been disabled until further notice. We're probably breaking someone's automation, sorry for that. Please contact this list with specific problems, we can help to mitigate. Future Infra owners: please be attentive to the fix availability. Best Regards, Infra Team. P.S. Sagi Shnaidman, thanks! References: [1] https://jenkins-ci.org/content/mitigating-unauthenticated-remote-code-execut... -- Max Kovgan Senior Software Engineer Red Hat - EMEA ENG Virtualization R&D Tel.: +972 9769 2060 Email: mkovgan [at] redhat [dot] com Web: http://www.redhat.com RHT Global #: 82-72060
3567
Age (days ago)
3567
Last active (days ago)
0 comments
1 participants
participants (1)
-
Max Kovgan