Bug 1291794 (CVE-2015-7536) - CVE-2015-7536 jenkins: stored XSS vulnerability through workspace files and archived artifacts (SECURITY-95)
Summary: CVE-2015-7536 jenkins: stored XSS vulnerability through workspace files and a...
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2015-7536
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 1291799 1291800
Blocks:
TreeView+ depends on / blocked
 
Reported: 2015-12-15 15:34 UTC by Martin Prpič
Modified: 2021-10-21 00:49 UTC (History)
12 users (show)

Fixed In Version: Jenkins 1.641, Jenkins 1.625.3
Clone Of:
Environment:
Last Closed: 2021-10-21 00:49:20 UTC
Embargoed:


Attachments (Terms of Use)

Description Martin Prpič 2015-12-15 15:34:57 UTC
In certain configurations, low privilege users were able to create e.g. HTML files in workspaces and archived artifacts that could result in XSS when accessed by other users. Jenkins now sends Content-Security-Policy headers that enables sandboxing and prohibits script execution by default.

This could allow low-privilege users to perform limited XSS in certain configurations.

External References:

https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-12-09

Comment 2 Martin Prpič 2015-12-15 15:44:14 UTC
Created jenkins tracking bugs for this issue:

Affects: fedora-all [bug 1291799]


Note You need to log in before you can comment on or make changes to this bug.