Back to bug 2044497

Who When What Removed Added
Przemyslaw Roguski 2022-01-25 10:45:44 UTC Doc Text Missing permission verification vulnerability was found in the Jenkins Mailer plugin. The form validation method does not perform a permission check what allows attackers with Overall/Read access to use the DNS used by the Jenkins instance to resolve an attacker-specified hostname.
Przemyslaw Roguski 2022-01-25 10:52:10 UTC Depends On 2044912
Przemyslaw Roguski 2022-01-25 10:52:45 UTC Depends On 2044914
Przemyslaw Roguski 2022-01-25 10:52:59 UTC Depends On 2044913
Przemyslaw Roguski 2022-01-25 10:53:09 UTC Depends On 2044915
Adam Kaplan 2022-01-26 18:52:54 UTC CC adam.kaplan
Eric Christensen 2022-01-26 19:35:16 UTC Doc Text Missing permission verification vulnerability was found in the Jenkins Mailer plugin. The form validation method does not perform a permission check what allows attackers with Overall/Read access to use the DNS used by the Jenkins instance to resolve an attacker-specified hostname. A missing permissions verification vulnerability was found in the Jenkins Mailer plugin. The form validation method does not perform a permission check which allows attackers with Overall/Read access to use the DNS used by the Jenkins instance to resolve an attacker-specified hostname.
Przemyslaw Roguski 2022-01-28 16:54:34 UTC Depends On 2044912
Przemyslaw Roguski 2022-01-28 16:57:08 UTC Depends On 2047839
Red Hat Bugzilla 2022-05-09 08:29:52 UTC CC aos-bugs
Red Hat Bugzilla 2022-09-30 18:51:02 UTC CC pbhattac
Red Hat Bugzilla 2023-07-07 08:28:05 UTC Assignee security-response-team nobody

Back to bug 2044497