Логотип exploitDog
bind:"CVE-2018-1000076"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2018-1000076"

Количество 10

Количество 10

ubuntu логотип

CVE-2018-1000076

почти 8 лет назад

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: 2.3.6 and earlier, Ruby 2.4 series: 2.4.3 and earlier, Ruby 2.5 series: 2.5.0 and earlier, prior to trunk revision 62422 contains a Improper Verification of Cryptographic Signature vulnerability in package.rb that can result in a mis-signed gem could be installed, as the tarball would contain multiple gem signatures.. This vulnerability appears to have been fixed in 2.7.6.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2018-1000076

почти 8 лет назад

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: 2.3.6 and earlier, Ruby 2.4 series: 2.4.3 and earlier, Ruby 2.5 series: 2.5.0 and earlier, prior to trunk revision 62422 contains a Improper Verification of Cryptographic Signature vulnerability in package.rb that can result in a mis-signed gem could be installed, as the tarball would contain multiple gem signatures.. This vulnerability appears to have been fixed in 2.7.6.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2018-1000076

почти 8 лет назад

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: 2.3.6 and earlier, Ruby 2.4 series: 2.4.3 and earlier, Ruby 2.5 series: 2.5.0 and earlier, prior to trunk revision 62422 contains a Improper Verification of Cryptographic Signature vulnerability in package.rb that can result in a mis-signed gem could be installed, as the tarball would contain multiple gem signatures.. This vulnerability appears to have been fixed in 2.7.6.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2018-1000076

почти 8 лет назад

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-mc6j-h948-v2p6

больше 3 лет назад

RubyGems Improper Verification of Cryptographic Signature vulnerability

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2018-00591

почти 8 лет назад

Уязвимость системы управления пакетами RubyGems, связанная с неправльной проверкой криптографической подписи, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.5
EPSS: Низкий
oracle-oval логотип

ELSA-2019-2028

больше 6 лет назад

ELSA-2019-2028: ruby security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1771-1

больше 6 лет назад

Security update for ruby-bundled-gems-rpmhelper, ruby2.5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1804-1

больше 6 лет назад

Security update for ruby-bundled-gems-rpmhelper, ruby2.5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1570-1

больше 5 лет назад

Security update for ruby2.1

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-1000076

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: 2.3.6 and earlier, Ruby 2.4 series: 2.4.3 and earlier, Ruby 2.5 series: 2.5.0 and earlier, prior to trunk revision 62422 contains a Improper Verification of Cryptographic Signature vulnerability in package.rb that can result in a mis-signed gem could be installed, as the tarball would contain multiple gem signatures.. This vulnerability appears to have been fixed in 2.7.6.

CVSS3: 9.8
1%
Низкий
почти 8 лет назад
redhat логотип
CVE-2018-1000076

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: 2.3.6 and earlier, Ruby 2.4 series: 2.4.3 and earlier, Ruby 2.5 series: 2.5.0 and earlier, prior to trunk revision 62422 contains a Improper Verification of Cryptographic Signature vulnerability in package.rb that can result in a mis-signed gem could be installed, as the tarball would contain multiple gem signatures.. This vulnerability appears to have been fixed in 2.7.6.

CVSS3: 5.5
1%
Низкий
почти 8 лет назад
nvd логотип
CVE-2018-1000076

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: 2.3.6 and earlier, Ruby 2.4 series: 2.4.3 and earlier, Ruby 2.5 series: 2.5.0 and earlier, prior to trunk revision 62422 contains a Improper Verification of Cryptographic Signature vulnerability in package.rb that can result in a mis-signed gem could be installed, as the tarball would contain multiple gem signatures.. This vulnerability appears to have been fixed in 2.7.6.

CVSS3: 9.8
1%
Низкий
почти 8 лет назад
debian логотип
CVE-2018-1000076

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: ...

CVSS3: 9.8
1%
Низкий
почти 8 лет назад
github логотип
GHSA-mc6j-h948-v2p6

RubyGems Improper Verification of Cryptographic Signature vulnerability

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2018-00591

Уязвимость системы управления пакетами RubyGems, связанная с неправльной проверкой криптографической подписи, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.5
1%
Низкий
почти 8 лет назад
oracle-oval логотип
ELSA-2019-2028

ELSA-2019-2028: ruby security update (MODERATE)

больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1771-1

Security update for ruby-bundled-gems-rpmhelper, ruby2.5

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1804-1

Security update for ruby-bundled-gems-rpmhelper, ruby2.5

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:1570-1

Security update for ruby2.1

больше 5 лет назад

Уязвимостей на страницу