Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-2125

Опубликовано: 01 окт. 2013
Источник: debian

Описание

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rubygemsfixed1.8.24-1package

Связанные уязвимости

ubuntu
около 12 лет назад

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

redhat
больше 13 лет назад

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

nvd
около 12 лет назад

RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

github
больше 3 лет назад

RubyGems HTTPS to HTTP redirect

oracle-oval
около 12 лет назад

ELSA-2013-1441: rubygems security update (MODERATE)