Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-6135

Опубликовано: 17 фев. 2013
Источник: redhat
CVSS2: 2.1

Описание

RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.

Отчет

Not vulnerable. This issue did not affect the versions of rubygem-passenger as shipped with Red Hat OpenShift Enterprise 1.2 do not include the vulnerable code.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Enterprise 1ruby193-rubygem-passengerNot affected
OpenShift Enterprise 1rubygem-passengerNot affected

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=917925rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes

2.1 Low

CVSS2

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.

CVSS3: 7.5
nvd
около 6 лет назад

RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.

CVSS3: 7.5
debian
около 6 лет назад

RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to dele ...

CVSS3: 7.5
github
почти 4 года назад

RubyGems passenger gem allows remote attackers to delete files

2.1 Low

CVSS2