aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorLi-Wen Hsu <lwhsu@FreeBSD.org>2024-04-19 17:32:28 +0000
committerLi-Wen Hsu <lwhsu@FreeBSD.org>2024-04-19 17:32:28 +0000
commit38fd4746693f7f3330b754414a129361e891ac4f (patch)
treeffcada4451c57f2cfab68e012b44e39cff57c263
parentbdf02e6af6fd8de49d61f10be49b7fad243103ff (diff)
downloadports-38fd4746693f7f3330b754414a129361e891ac4f.tar.gz
ports-38fd4746693f7f3330b754414a129361e891ac4f.zip
security/vuxml: Document Jenkins Security Advisory 2024-04-17
Sponsored by: The FreeBSD Foundation
-rw-r--r--security/vuxml/vuln/2024.xml32
1 files changed, 32 insertions, 0 deletions
diff --git a/security/vuxml/vuln/2024.xml b/security/vuxml/vuln/2024.xml
index c9189cfb2bae..d871348915a6 100644
--- a/security/vuxml/vuln/2024.xml
+++ b/security/vuxml/vuln/2024.xml
@@ -1,3 +1,35 @@
+ <vuln vid="4ebdd56b-fe72-11ee-bc57-00e081b7aa2d">
+ <topic>jenkins -- Terrapin SSH vulnerability in Jenkins CLI client</topic>
+ <affects>
+ <package>
+ <name>jenkins</name>
+ <range><lt>2.452</lt></range>
+ </package>
+ <package>
+ <name>jenkins-lts</name>
+ <range><lt>2.440.3</lt></range>
+ </package>
+ </affects>
+ <description>
+ <body xmlns="http://www.w3.org/1999/xhtml">
+ <p>Jenkins Security Advisory:</p>
+ <blockquote cite="https://www.jenkins.io/security/advisory/2024-04-17/">
+ <h1>Description</h1>
+ <h5>(Medium) SECURITY-3386 / CVE-2023-48795</h5>
+ <p>Terrapin SSH vulnerability in Jenkins CLI client</p>
+ </blockquote>
+ </body>
+ </description>
+ <references>
+ <cvename>CVE-2023-48795</cvename>
+ <url>https://www.jenkins.io/security/advisory/2024-04-17/</url>
+ </references>
+ <dates>
+ <discovery>2024-04-17</discovery>
+ <entry>2024-04-19</entry>
+ </dates>
+ </vuln>
+
<vuln vid="f90bf863-e43c-4db3-b5a8-d9603684657a">
<topic>electron{27,28,29} -- multiple vulnerabilities</topic>
<affects>