• Icon: Bug Bug
    • Resolution: Fixed
    • Icon: Major Major
    • core
    • Jenkins 2.7.3
      sshd-module: 1.7

      SSHD is setup with unsecured cyphers like CBC (see https://www.kb.cert.org/vuls/id/958563). These cyphers should be removed.

      There is already a PR filed here: https://github.com/jenkinsci/sshd-module/pull/5. This will also need to be integrated in core hence this ticket.

          [JENKINS-39805] Remove unsafe cyphers of SSHD module

          Allan BURDAJEWICZ created issue -
          Allan BURDAJEWICZ made changes -
          Remote Link New: This issue links to "sshd-module - PR#5 (Web Link)" [ 15054 ]
          Daniel Beck made changes -
          Labels New: security
          Oleg Nenashev made changes -
          Link New: This issue is related to JENKINS-33021 [ JENKINS-33021 ]
          Oleg Nenashev made changes -
          Resolution New: Fixed [ 1 ]
          Status Original: Open [ 1 ] New: Resolved [ 5 ]
          Arnaud Héritier made changes -
          Assignee New: Oleg Nenashev [ oleg_nenashev ]
          Oleg Nenashev made changes -
          Labels Original: security New: security sshd

            oleg_nenashev Oleg Nenashev
            allan_burdajewicz Allan BURDAJEWICZ
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: