Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-1000047

Опубликовано: 17 июл. 2017
Источник: debian
EPSS Низкий

Описание

rbenv (all current versions) is vulnerable to Directory Traversal in the specification of Ruby version resulting in arbitrary code execution

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rbenvunfixedpackage
rbenvignoredtrixiepackage
rbenvignoredbookwormpackage
rbenvno-dsabullseyepackage
rbenvno-dsabusterpackage
rbenvno-dsastretchpackage
rbenvno-dsajessiepackage
rbenvno-dsawheezypackage

Примечания

  • https://github.com/rbenv/rbenv/issues/977

  • .ruby-version is .rbenv-version in wheezy

  • https://github.com/rbenv/rbenv/commit/370c26a6c9ee0511972ea04904fcc89014a22987 (v1.2.0)

EPSS

Процентиль: 86%
0.03031
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

rbenv (all current versions) is vulnerable to Directory Traversal in the specification of Ruby version resulting in arbitrary code execution

CVSS3: 9.8
nvd
больше 8 лет назад

rbenv (all current versions) is vulnerable to Directory Traversal in the specification of Ruby version resulting in arbitrary code execution

CVSS3: 9.8
github
больше 3 лет назад

rbenv (all current versions) is vulnerable to Directory Traversal in the specification of Ruby version resulting in arbitrary code execution

EPSS

Процентиль: 86%
0.03031
Низкий