FreeBSD : jenkins -- multiple vulnerabilities (9595d002-edeb-4602-be2d-791cd654247e)

high Nessus Plugin ID 148522

Synopsis

The remote FreeBSD host is missing one or more security-related updates.

Description

Jenkins Security Advisory : Description(Low) SECURITY-1721 / CVE-2021-21639 Lack of type validation in agent related REST API (Medium) SECURITY-1871 / CVE-2021-21640 View name validation bypass

Solution

Update the affected packages.

See Also

https://www.jenkins.io/security/advisory/2021-04-07/

http://www.nessus.org/u?c2f8f2d0

Plugin Details

Severity: High

ID: 148522

File Name: freebsd_pkg_9595d002edeb4602be2d791cd654247e.nasl

Version: 1.1

Type: local

Published: 4/14/2021

Updated: 4/14/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:jenkins, p-cpe:/a:freebsd:freebsd:jenkins-lts, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 4/8/2021

Vulnerability Publication Date: 4/7/2021