Regular Expression Processing Vulnerability in Jenkins Build Failure Analyzer Plugin
CVE-2019-16555
Key Information:
- Vendor
Jenkins
- Vendor
- CVE Published:
- 17 December 2019
What is CVE-2019-16555?
A vulnerability exists in the Jenkins Build Failure Analyzer Plugin where user-supplied regular expressions can be processed in an uninterruptible manner. This can allow attackers to exploit the inability to interrupt the evaluation of the regular expression, which may lead to performance issues and potential Denial of Service conditions. The affected versions include Build Failure Analyzer Plugin 1.24.1 and earlier, necessitating immediate attention and remediation by users to mitigate risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Jenkins Build Failure Analyzer Plugin <= 1.24.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved