Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-47318

Опубликовано: 17 янв. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8

Описание

ruby-git versions prior to v1.13.0 allows a remote authenticated attacker to execute an arbitrary ruby code by having a user to load a repository containing a specially crafted filename to the product. This vulnerability is different from CVE-2022-46648.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

1.13.1-1
esm-apps-legacy/xenial

needed

esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/noble

not-affected

1.13.1-1
esm-apps/resolute

not-affected

1.13.1-1
esm-apps/xenial

ignored

end of ESM support, was needed
focal

ignored

end of standard support, was needed

Показывать по

EPSS

Процентиль: 70%
0.0136
Низкий

8 High

CVSS3

Связанные уязвимости

CVSS3: 8
redhat
больше 3 лет назад

ruby-git versions prior to v1.13.0 allows a remote authenticated attacker to execute an arbitrary ruby code by having a user to load a repository containing a specially crafted filename to the product. This vulnerability is different from CVE-2022-46648.

CVSS3: 8
nvd
больше 3 лет назад

ruby-git versions prior to v1.13.0 allows a remote authenticated attacker to execute an arbitrary ruby code by having a user to load a repository containing a specially crafted filename to the product. This vulnerability is different from CVE-2022-46648.

CVSS3: 8
debian
больше 3 лет назад

ruby-git versions prior to v1.13.0 allows a remote authenticated attac ...

CVSS3: 8
github
больше 3 лет назад

Code injection in ruby git

CVSS3: 8
fstec
больше 4 лет назад

Уязвимость библиотеки Ruby/Git интерпретатора Ruby, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 70%
0.0136
Низкий

8 High

CVSS3