ok, we're good to go.

https://amplab.cs.berkeley.edu/jenkins/cli/  returns a 404, as it should.

thanks for your patience...

shane

On Sun, Nov 8, 2015 at 2:53 PM, shane knapp <skn...@berkeley.edu> wrote:
> hey everyone!
>
> i'm about to shut down jenkins to deploy a temporary fix for a massive
> security hole i found out about late friday:
>
> http://foxglovesecurity.com/2015/11/06/what-do-weblogic-websphere-jboss-jenkins-opennms-and-your-application-have-in-common-this-vulnerability/
>
> read the whole thing.  it's kinda nuts.
>
> anyways, jenkins/cloudbees is on top of it and they've released a
> quick patch, which i will be deploying right now:
>
> https://jenkins-ci.org/content/mitigating-unauthenticated-remote-code-execution-0-day-jenkins-cli
>
> downtime should be minimal, and i'll let every know when we're back up.
>
> i'm shutting jenkins down immediately.
>
> shane

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscr...@spark.apache.org
For additional commands, e-mail: dev-h...@spark.apache.org

Reply via email to