Re: Potential regressions re SECURITY-170

2016-05-17 Thread Arnaud Héritier
Thanks Rob

  The community started to list of broken plugins here :
https://wiki.jenkins-ci.org/display/JENKINS/Plugins+affected+by+fix+for+SECURITY-170
  I didn't reviewed if all issues you mentioned are correctly listed

Thanks

On Tue, May 17, 2016 at 4:42 AM, Rob Thomas  wrote:

> I believe there are some pretty serious regressions with SECURITY-170
>
> I originally reported https://issues.jenkins-ci.org/browse/JENKINS-34865
> and was thinking 'this is a pretty obvious and serious bug.. Surely someone
> else would have noticed this' I then had a look through some of the recent
> bug reports.
>
> Sadly, yes. A lot of them are having the same (or similar) problem:
>
> JENKINS-34864:MultiJob predefined parameters no longer passed to phase
> project (Open) https://issues.jenkins-ci.org/browse/JENKINS-34864
> JENKINS-34851:Strange quote rules for parameters (Closed)
> https://issues.jenkins-ci.org/browse/JENKINS-34851
> JENKINS-34858:Listed Parameters should reflect what was used when the
> build ran (Open) https://issues.jenkins-ci.org/browse/JENKINS-34858
>
> That was with a 10 minute browse of recent issues in your Jira.  Several
> other subjects hinted that they could be related, but I didn't investigate
> too much after that.
>
> It was suggested that I post here, after mentioning it in your IRC channel.
>
> --Rob
>
> --
> You received this message because you are subscribed to the Google Groups
> "Jenkins Developers" group.
> To unsubscribe from this group and stop receiving emails from it, send an
> email to jenkinsci-dev+unsubscr...@googlegroups.com.
> To view this discussion on the web visit
> https://groups.google.com/d/msgid/jenkinsci-dev/3990223a-fe6f-4324-91d2-62faf71b15c9%40googlegroups.com
> 
> .
> For more options, visit https://groups.google.com/d/optout.
>



-- 
-
Arnaud Héritier
http://aheritier.net
Mail/GTalk: aheritier AT gmail DOT com
Twitter/Skype : aheritier

-- 
You received this message because you are subscribed to the Google Groups 
"Jenkins Developers" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to jenkinsci-dev+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/jenkinsci-dev/CAFNCU-_AoWFcxYtzBN1Ghuejio1_5nBrNaSjeFPy2U9gbWxXiw%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.


Potential regressions re SECURITY-170

2016-05-16 Thread Rob Thomas
I believe there are some pretty serious regressions with SECURITY-170

I originally reported https://issues.jenkins-ci.org/browse/JENKINS-34865 
and was thinking 'this is a pretty obvious and serious bug.. Surely someone 
else would have noticed this' I then had a look through some of the recent 
bug reports.

Sadly, yes. A lot of them are having the same (or similar) problem:

JENKINS-34864:MultiJob predefined parameters no longer passed to phase 
project (Open) https://issues.jenkins-ci.org/browse/JENKINS-34864
JENKINS-34851:Strange quote rules for parameters (Closed) 
https://issues.jenkins-ci.org/browse/JENKINS-34851
JENKINS-34858:Listed Parameters should reflect what was used when the build 
ran (Open) https://issues.jenkins-ci.org/browse/JENKINS-34858

That was with a 10 minute browse of recent issues in your Jira.  Several 
other subjects hinted that they could be related, but I didn't investigate 
too much after that.

It was suggested that I post here, after mentioning it in your IRC channel.

--Rob

-- 
You received this message because you are subscribed to the Google Groups 
"Jenkins Developers" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to jenkinsci-dev+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/jenkinsci-dev/3990223a-fe6f-4324-91d2-62faf71b15c9%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.