nanog mailing list archives

Jenkins amplification


From: Töma Gavrichenkov <ximaera () gmail com>
Date: Mon, 3 Feb 2020 18:42:03 +0300

FYI

https://nvd.nist.gov/vuln/detail/CVE-2020-2100
A nice description: https://mobile.twitter.com/Foone/status/1223063275996213248

May you live in interesting times.

Do not postpone a software update if Jenkins is deployed somewhere in
your network.

--
Töma


Current thread: