Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-0162

Опубликовано: 01 мар. 2013
Источник: debian

Описание

The diff_pp function in lib/gauntlet_rubyparser.rb in the ruby_parser gem 3.1.1 and earlier for Ruby allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ruby-parserfixed2.3.1-2package

Примечания

  • https://www.openwall.com/lists/oss-security/2013/02/22/5

Связанные уязвимости

ubuntu
почти 13 лет назад

The diff_pp function in lib/gauntlet_rubyparser.rb in the ruby_parser gem 3.1.1 and earlier for Ruby allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.

redhat
около 13 лет назад

The diff_pp function in lib/gauntlet_rubyparser.rb in the ruby_parser gem 3.1.1 and earlier for Ruby allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.

nvd
почти 13 лет назад

The diff_pp function in lib/gauntlet_rubyparser.rb in the ruby_parser gem 3.1.1 and earlier for Ruby allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.

github
почти 4 года назад

ruby_parser allows local users to overwrite arbitrary files via symlink attack on temporary file with predictable name