Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-34826

Promoted builds do not receive parameter values defined at the job level

    • Icon: Bug Bug
    • Resolution: Fixed
    • Icon: Critical Critical

      The security issue related to arbitrary build parameters (described in the link https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2016-05-11) was addressed by Jenkins 1.651.2. Unfortunately, this security fix caused freestyle jobs containing build parameters to break if they include promoted builds that attempt to access the build parameters defined at the job level.

      Downgrading to Jenkins 1.651.1 allowed the affected jobs to function again.

          [JENKINS-34826] Promoted builds do not receive parameter values defined at the job level

          Hidden Maverick created issue -
          Oleg Nenashev made changes -
          Priority Original: Major [ 3 ] New: Critical [ 2 ]
          Christopher Orr made changes -
          Labels New: security-170
          Oleg Nenashev made changes -
          Status Original: Open [ 1 ] New: In Progress [ 3 ]
          Oleg Nenashev made changes -
          Resolution New: Fixed [ 1 ]
          Status Original: In Progress [ 3 ] New: Resolved [ 5 ]
          R. Tyler Croy made changes -
          Workflow Original: JNJira [ 171017 ] New: JNJira + In-Review [ 199008 ]
          CloudBees Inc. made changes -
          Remote Link New: This issue links to "CloudBees Internal OSS-955 (Web Link)" [ 18794 ]

            oleg_nenashev Oleg Nenashev
            hiddenmaverick Hidden Maverick
            Votes:
            2 Vote for this issue
            Watchers:
            5 Start watching this issue

              Created:
              Updated:
              Resolved: