GHSA-4qrj-99r6-jfrh

    Dashboard / Vulnerabilities / GHSA-4qrj-99r6-jfrh

    GHSA-4qrj-99r6-jfrh

    Published: 24 May 2022Last Modified: 16 Feb 2024
    Aliases:

    Summary: Missing hostname validation in Email Extension Plugin

    Details: Email Extension Plugin 2.75 and earlier does not perform hostname validation when connecting to the configured SMTP server. This lack of validation could be abused using a man-in-the-middle attack to intercept these connections. Email Extension Plugin 2.76 validates the SMTP hostname when connecting via TLS by default. In Email Extension Plugin 2.75 and earlier, administrators can set the Java system property `mail.smtp.ssl.checkserveridentity` to `true` on startup to enable this protection. Alternatively, this protection can be enabled (or disabled in the new version) via the 'Advanced Email Properties' field in the plugin’s configuration in Configure System. In case of problems, this protection can be disabled again by setting `mail.smtp.ssl.checkserveridentity` to `false` using either method.

    Affected packages

    Package

    Name: org.jenkins-ci.plugins:email-ext

    Purl: pkg:maven/org.jenkins-ci.plugins/email-ext

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -2.76

    Affected versions

    2.11

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    GHSA-4qrj-99r6-jfrh | CVE-DB