Количество 12
Количество 12
ELSA-2013-0129
ELSA-2013-0129: ruby security and bug fix update (MODERATE)

CVE-2012-4522
The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path.

CVE-2012-4522
The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path.

CVE-2012-4522
The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path.
CVE-2012-4522
The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlev ...

CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.

CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.

CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.
CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attacker ...
GHSA-6mch-f8jc-rpmr
The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path.
GHSA-gh65-6rxj-m8cc
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.
ELSA-2013-0612
ELSA-2013-0612: ruby security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
ELSA-2013-0129 ELSA-2013-0129: ruby security and bug fix update (MODERATE) | больше 12 лет назад | |||
![]() | CVE-2012-4522 The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path. | CVSS2: 5 | 1% Низкий | больше 12 лет назад |
![]() | CVE-2012-4522 The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path. | CVSS2: 4.3 | 1% Низкий | почти 13 лет назад |
![]() | CVE-2012-4522 The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path. | CVSS2: 5 | 1% Низкий | больше 12 лет назад |
CVE-2012-4522 The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlev ... | CVSS2: 5 | 1% Низкий | больше 12 лет назад | |
![]() | CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | CVSS2: 4.3 | 1% Низкий | больше 12 лет назад |
![]() | CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | CVSS2: 4.3 | 1% Низкий | почти 13 лет назад |
![]() | CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | CVSS2: 4.3 | 1% Низкий | больше 12 лет назад |
CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attacker ... | CVSS2: 4.3 | 1% Низкий | больше 12 лет назад | |
GHSA-6mch-f8jc-rpmr The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path. | 1% Низкий | больше 3 лет назад | ||
GHSA-gh65-6rxj-m8cc The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | 1% Низкий | больше 3 лет назад | ||
ELSA-2013-0612 ELSA-2013-0612: ruby security update (MODERATE) | больше 12 лет назад |
Уязвимостей на страницу