-
Bug
-
Resolution: Fixed
-
High
-
None
-
None
-
None
-
Severity 2 - Major
-
It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchronous events on the back-end.
This allows an attacker to merge any code into unsuspecting repositories.
All versions before version 3.0.1 of the auto-unapprove plugin are affected, however since the auto-unapprove plugin is not bundled with Bitbucket Server it does not affect any particular version of Bitbucket
[BSERV-10439] Race condition in auto-unapprove plugin - CVE-2017-16857
Workflow | Original: Stash Workflow - Restricted [ 2486770 ] | New: JAC Bug Workflow v3 [ 3137287 ] |
Symptom Severity | Original: Major [ 14431 ] | New: Severity 2 - Major [ 15831 ] |
Labels | Original: CVE-2017-16857 race-condition security | New: CVE-2017-16857 advisory advisory-released race-condition security |
Labels | Original: CVE-2017-16857 security | New: CVE-2017-16857 race-condition security |
Remote Link | Original: This issue links to "Page (Extranet)" [ 338081 ] |
Summary | Original: Race condition in auto-unapprove plugin | New: Race condition in auto-unapprove plugin - CVE-2017-16857 |
Description |
Original:
It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchronous events on the back-end.
This allows an attacker to merge any code into unsuspecting repositories. This affects all versions before version 3.0.1 of the auto-unapprove plugin, however since the auto-unapprove plugin is not bundled with Bitbucket Server it does not affect any particular version of Bitbucket |
New:
It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchronous events on the back-end.
This allows an attacker to merge any code into unsuspecting repositories. All versions before version 3.0.1 of the auto-unapprove plugin are affected, however since the auto-unapprove plugin is not bundled with Bitbucket Server it does not affect any particular version of Bitbucket |
Description |
Original:
It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchronous events on the back-end.
This allows an attacker to merge any code into unsuspecting repositories. This affects all versions of the auto-unapprove plugin, however since the auto-unapprove plugin is not bundled with Bitbucket Server it does not affect any particular version of Bitbucket |
New:
It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchronous events on the back-end.
This allows an attacker to merge any code into unsuspecting repositories. This affects all versions before version 3.0.1 of the auto-unapprove plugin, however since the auto-unapprove plugin is not bundled with Bitbucket Server it does not affect any particular version of Bitbucket |
Labels | New: CVE-2017-16857 security |
CVSS v3 score: 8.5 => High severity
Exploitability Metrics
Scope Metric
Impact Metrics