Protection Mechanism Failure in Script Security - CVE-2022-43401
Published: October 24, 2022
Vulnerability identifier: #VU68594
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-43401
CWE-ID: CWE-693
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to insufficient implementation of security measures in the Groovy language runtime. A remote user can bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.
Affected software
Script Security
Red Hat OpenShift Container Platform
Oracle Communications Cloud Native Core Automated Test Suite
cri-o (Red Hat package)
jenkins (Red Hat package)
jenkins-2-plugins (Red Hat package)
Red Hat OpenShift Container Platform
Oracle Communications Cloud Native Core Automated Test Suite
cri-o (Red Hat package)
jenkins (Red Hat package)
jenkins-2-plugins (Red Hat package)
How to mitigate CVE-2022-43401
Install updates from vendor's website.
Script Security - update to 1184.v85d16b_d851b_3
Red Hat OpenShift Container Platform - addressed in versions 4.9.56, 4.10.51
cri-o (Red Hat package) - addressed in versions 1.23.5-5.rhaos4.10.gitd9dec98.el7, 1.23.5-5.rhaos4.10.gitd9dec98.el8
jenkins (Red Hat package) - addressed in versions 2.361.1.1675668150-1.el8, 2.361.4.1675702346-3.el8, 2.387.1.1683009763-3.el8
jenkins-2-plugins (Red Hat package) - addressed in versions 4.9.1675668922-1.el8, 4.10.1675144701-1.el8, 4.11.1683009941-1.el8, 4.12.1675702407-1.el8
Red Hat OpenShift Container Platform - addressed in versions 4.9.56, 4.10.51
cri-o (Red Hat package) - addressed in versions 1.23.5-5.rhaos4.10.gitd9dec98.el7, 1.23.5-5.rhaos4.10.gitd9dec98.el8
jenkins (Red Hat package) - addressed in versions 2.361.1.1675668150-1.el8, 2.361.4.1675702346-3.el8, 2.387.1.1683009763-3.el8
jenkins-2-plugins (Red Hat package) - addressed in versions 4.9.1675668922-1.el8, 4.10.1675144701-1.el8, 4.11.1683009941-1.el8, 4.12.1675702407-1.el8
External References
Related Security Bulletins
- Multiple vulnerabilities in Jenkins Script Security plugin
- Multiple vulnerabilities in OpenShift Container Platform 4.10
- Multiple vulnerabilities in OpenShift Container Platform 4.9
- Multiple vulnerabilities in OpenShift Container Platform 4.9
- OpenShift Developer Tools and Services for OCP 4.12 update for Jenkins and Jenkins-2-plugins
- Multiple vulnerabilities in Oracle Communications Cloud Native Core Automated Test Suite
- OpenShift Developer Tools and Services for OCP 4.11 update for jenkins and jenkins-2-plugins