[FREEBSD:1EE26D45-6DDB-11EE-9898-00E081B7AA2D] jenkins -- HTTP/2 denial of service vulnerability in bundled Jetty

Severity High
Affected Packages 2
CVEs 2

Jenkins Security Advisory:

  Description
  (High) SECURITY-3291 / CVE-2023-36478, CVE-2023-44487
  HTTP/2 denial of service vulnerability in bundled Jetty
Package Affected Version
pkg:freebsd/jenkins-lts < 2.414.3
pkg:freebsd/jenkins < 2.428
ID
FREEBSD:1EE26D45-6DDB-11EE-9898-00E081B7AA2D
Severity
high
Severity from
CVE-2023-36478
URL
http://vuxml.freebsd.org/freebsd/1ee26d45-6ddb-11ee-9898-00e081b7aa2d.html
Published
2023-10-18T00:00:00
(11 months ago)
Modified
2023-10-18T00:00:00
(11 months ago)
Rights
FreeBSD VuXML Security Team
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:freebsd/jenkins-lts jenkins-lts < 2.414.3
Affected pkg:freebsd/jenkins jenkins < 2.428
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...