Comment 14 for bug 914628

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package jenkins-winstone - 0.9.10-jenkins-25+dfsg-0ubuntu2.2

---------------
jenkins-winstone (0.9.10-jenkins-25+dfsg-0ubuntu2.2) oneiric-security; urgency=low

  * SECURITY UPDATE: Hash DoS vulnerability in parameter
    handling (LP: #914628):
    - debian/patches/hash-dos-fix.patch: Cherry picked fix from upstream
      to prevent this vulnerability.
    - http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-01-10.cb
 -- James Page <email address hidden> Fri, 27 Jan 2012 16:01:06 +0000