---
gem: cocaine
cve: 2013-4457
osvdb: 98835
url: http://www.osvdb.org/show/osvdb/98835
title: Cocaine Gem for Ruby contains a flaw
date: 2013-10-22
description: Cocaine Gem for Ruby contains a flaw that is due to the method
  of variable interpolation used by the program. With a specially crafted
  object, a context-dependent attacker can execute arbitrary commands.
cvss_v2: 6.8
unaffected_versions:
  - < 0.4.0
patched_versions: 
  - '>= 0.5.3'