Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-2125

Опубликовано: 01 окт. 2013
Источник: debian
EPSS Низкий

Описание

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rubygemsfixed1.8.24-1package

EPSS

Процентиль: 69%
0.00638
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

redhat
около 13 лет назад

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

nvd
больше 11 лет назад

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

github
около 3 лет назад

RubyGems HTTPS to HTTP redirect

oracle-oval
больше 11 лет назад

ELSA-2013-1441: rubygems security update (MODERATE)

EPSS

Процентиль: 69%
0.00638
Низкий