• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

ManageIQ / manageiq / 38676 / 9
49%
master: 63%

Build:
Build:
LAST BUILD BRANCH: kasparov
DEFAULT BRANCH: master
Ran 19 Aug 2016 04:07PM UTC
Files 2428
Run time 109min
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

10 Aug 2016 09:25PM UTC coverage: 7.229%. Remained the same
2.2.5, TEST_SUITE=manageiq-providers-amazon

push

travis-ci

root
Merge branch 'fix_expr_cve' into '5.6.z'

Filter input from custom searches

In custom built searches it's possible to submit unfiltered string values into fields that expect integers. These values make their way through `eval` allowing for arbitrary Ruby code execution.

Addresses CVE-2016-5383 and
https://bugzilla.redhat.com/show_bug.cgi?id=1353722

Discovered while investigating this BZ:
https://bugzilla.redhat.com/show_bug.cgi?id=1349429

Thanks to @twade (Tim Wade)

/cc @obarenbo @jfrey

See merge request !1024

14745 of 203966 relevant lines covered (7.23%)

2.21 hits per line

Source Files on job 38676.9 (2.2.5, TEST_SUITE=manageiq-providers-amazon)
  • Tree
  • List 0
  • Changed 2
  • Source Changed 1
  • Coverage Changed 1
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Build 38676
  • Travis Job 38676.9
  • 8ba817b4 on github
  • Prev Job for 2.2.5, TEST_SUITE=manageiq-providers-amazon on darga (#37849.9)
  • Next Job for 2.2.5, TEST_SUITE=manageiq-providers-amazon on darga (#38678.9)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc