CVE-2022-25175: OS Command Injection
A flaw was found in Jenkins. The Pipeline: Multibranch uses the same checkout directories for distinct SCMs for the readTrusted step. This flaw allows attackers with item/configure permission to invoke arbitrary OS commands on the controller through crafted SCM contents.This allows attackers to compromise confidentiality, integrity, and availability.
Other sources
Jenkins Pipeline: Multibranch Plugin 706.vd43c65dec013 and earlier uses distinct checkout directories per SCM for the readTrusted step, allowing attackers with Item/Configure permission to invoke arbitrary OS commands on the controller through crafted SCM contents.
Jenkins Pipeline: Multibranch Plugin 706.vd43c65dec013 and earlier uses the same checkout directories for distinct SCMs for the readTrusted step, allowing attackers with Item/Configure permission to invoke arbitrary OS commands on the controller through crafted SCM contents.
Pipeline: Multibranch 706.vd43c65dec013 and earlier uses the same checkout directories for distinct SCMs for the readTrusted step. This allows attackers with Item/Configure permission to invoke arbitrary OS commands on the controller through crafted SCM contents.
References:
https://www.jenkins.io/security/advisory/2022-02-15/
— Red Hat
Affected Software
Remediation
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2022-25175?
CVE-2022-25175 has been rated as a high severity vulnerability due to its potential for remote code execution by attackers with specific permissions.
How do I fix CVE-2022-25175?
To fix CVE-2022-25175, ensure you update Jenkins and the affected workflow-multibranch plugin to the latest recommended versions.
What systems are affected by CVE-2022-25175?
CVE-2022-25175 affects Jenkins installations with the Pipeline: Multibranch feature that utilize shared checkout directories.
Who can exploit CVE-2022-25175?
CVE-2022-25175 can be exploited by authenticated users who have 'item/configure' permissions on the Jenkins system.
What are the potential impacts of CVE-2022-25175?
The potential impacts of CVE-2022-25175 include execution of arbitrary OS commands on the Jenkins controller, leading to unauthorized access and control.