jenkins-script-security-plugin: handling of subexpressions in increment and decrement expressions not involving actual assignment allowed attackers to execute arbitrary code in sandboxed scripts
Published Sep 12, 2019
4.2
MEDIUMCVSS 3.1
EPSS 1.04%
Description
A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of subexpressions in increment and decrement expressions not involving actual assignment allowed attackers to execute arbitrary code in sandboxed scripts.
Affected products
-
Affected
- 1.62 and earlier
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Jenkins project | Jenkins Script Security Plugin | unknown | Affected
|
- ≤ 1.62
No data.
Red Hat OpenShift Container Platform 3.11
jenkins-2-plugins-0:3.11.1575261255-1.el7
Fixed · RHSA-2019:4055
Red Hat OpenShift Container Platform 4.1
jenkins-2-plugins-0:4.1.1574872364-1.el7
Fixed · RHSA-2019:4089
Red Hat OpenShift Container Platform 4.2
jenkins-2-plugins-0:4.2.1574873592-1.el7
Fixed · RHSA-2019:4097
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat OpenShift Container Platform 3.11 | jenkins-2-plugins-0:3.11.1575261255-1.el7 | Fixed | RHSA-2019:4055 |
| Red Hat OpenShift Container Platform 4.1 | jenkins-2-plugins-0:4.1.1574872364-1.el7 | Fixed | RHSA-2019:4089 |
| Red Hat OpenShift Container Platform 4.2 | jenkins-2-plugins-0:4.2.1574873592-1.el7 | Fixed | RHSA-2019:4097 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (9)
- http://www.openwall.com/lists/oss-security/2019/09/12/2 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2019-10400 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1819708 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-2927 Advisory
- https://github.com/advisories/GHSA-76q7-r3g4-wvm4 Advisory
- https://github.com/jenkinsci/script-security-plugin/commit/b28e4dc5584ef6515aeb9bc834691176546d0689
- https://jenkins.io/security/advisory/2019-09-12/#SECURITY-1538 x_refsource_CONFIRMVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2019-10400
- https://www.cve.org/CVERecord?id=CVE-2019-10400
| Link | Providers | Tags |
|---|---|---|
| http://www.openwall.com/lists/oss-security/2019/09/12/2 | mailing-listx_refsource_MLISTMailing ListThird Party Advisory | |
| https://access.redhat.com/security/cve/CVE-2019-10400 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1819708 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-2927 | Advisory | |
| https://github.com/advisories/GHSA-76q7-r3g4-wvm4 | Advisory | |
| https://github.com/jenkinsci/script-security-plugin/commit/b28e4dc5584ef6515aeb9bc834691176546d0689 | ||
| https://jenkins.io/security/advisory/2019-09-12/#SECURITY-1538 | x_refsource_CONFIRMVendor Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2019-10400 | ||
| https://www.cve.org/CVERecord?id=CVE-2019-10400 |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub