This bug was fixed in the package jenkins-executable-war -
1.22-1ubuntu0.1

---------------
jenkins-executable-war (1.22-1ubuntu0.1) oneiric-security; urgency=low

  * SECURITY UPDATE: Hash DoS vulnerability in parameter
    handling (LP: #914628):
    - debian/patches/hash-dos-fix.patch: Cherry picked fix from upstream
      to prevent this vulnerability.
    - 
http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-01-10.cb
 -- James Page <[email protected]>   Fri, 27 Jan 2012 16:02:35 +0000

** Changed in: jenkins-winstone (Ubuntu Oneiric)
       Status: In Progress => Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/914628

Title:
  Hash DoS vulnerability in Jenkins core

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/jenkins/+bug/914628/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to