Description
In Jenkins 2.423 and earlier, LTS 2.414.1 and earlier, processing file uploads using the Stapler web framework creates temporary files in the default system temporary directory with the default permissions for newly created files, potentially allowing attackers with access to the Jenkins controller file system to read and write the files before they are used.
Remediation
References
http://www.openwall.com/lists/oss-security/2023/09/20/5
https://www.jenkins.io/security/advisory/2023-09-20/#SECURITY-3073
Related Vulnerabilities
CVE-2020-36182 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2023-30465 Vulnerability in maven package org.apache.inlong:manager-pojo
CVE-2020-7676 Vulnerability in maven package org.webjars.bowergithub.angular:angular
CVE-2018-1999026 Vulnerability in maven package de.tracetronic.jenkins.plugins:ecutest
CVE-2020-2123 Vulnerability in maven package org.jenkins-ci.plugins:radargun