Project

General

Profile

Bug #6149

CVE-2014-3492 - XSS in host YAML view

Added by Dominic Cleal over 4 years ago. Updated 5 months ago.

Status:
Closed
Priority:
Urgent
Category:
Security
Target version:
Difficulty:
Triaged:
Bugzilla link:
Pull request:
Team Backlog:
Fixed in Releases:
Found in Releases:

Description

The host YAML view (preview of YAML data for Puppet) is vulnerable to cross-site scripting attacks, when data relating to the host (such as parameters) contains HTML content.

1. Edit a host, add a parameter with HTML as its name or value
2. View the host, click the YAML button

Associated revisions

Revision d40f5409 (diff)
Added by Lukas Zapletal over 4 years ago

fixes #6149 - fixed XSS in host YAML view (CVE-2014-3492)

Revision d7546f37 (diff)
Added by Lukas Zapletal over 4 years ago

fixes #6149 - fixed XSS in host YAML view (CVE-2014-3492)

(cherry picked from commit d40f5409ac36c1eab7b8a5ccf3d91cc6db90ce70)

Revision b6007279 (diff)
Added by Lukas Zapletal over 4 years ago

fixes #6149 - fixed XSS in host YAML view (CVE-2014-3492)

History

#1 Updated by Lukas Zapletal over 4 years ago

  • Status changed from New to Assigned
  • Assignee set to Lukas Zapletal

Reproduced, working on a fix.

#3 Updated by Lukas Zapletal over 4 years ago

  • Status changed from Assigned to Ready For Testing

Please review.

#4 Updated by Dominic Cleal over 4 years ago

  • Subject changed from EMBARGOED: XSS in host YAML view to EMBARGOED: CVE-2014-3492 - XSS in host YAML view

#5 Updated by Dominic Cleal over 4 years ago

  • Status changed from Ready For Testing to Pending

ACK, thanks Lukas!

#6 Updated by Dominic Cleal over 4 years ago

  • Target version changed from 1.8.2 to 1.8.1

#7 Updated by Dominic Cleal over 4 years ago

  • Legacy Backlogs Release (now unused) changed from 16 to 19

#8 Updated by Dominic Cleal over 4 years ago

  • Subject changed from EMBARGOED: CVE-2014-3492 - XSS in host YAML view to CVE-2014-3492 - XSS in host YAML view
  • Description updated (diff)
  • Private changed from Yes to No

#9 Updated by Lukas Zapletal over 4 years ago

  • Status changed from Pending to Closed
  • % Done changed from 0 to 100

#10 Updated by Dominic Cleal over 4 years ago

Fixes committed to 1.4-stable, 1.5-stable and develop.

Foreman 1.4.5 and 1.5.1 releases will be made today with the fix.

Also available in: Atom PDF