Sha256: 0b90ba2ed3a7b3b2af763d482e13279617c2478241edddcb3dc5dd33d4fdce95

Contents?: true

Size: 1.29 KB

Versions: 11

Compression:

Stored size: 1.29 KB

Contents

require 'spec_helper'

describe "The CVE-2013-1655 vulnerability" do
  before(:all) do 
    @check = Dawn::Kb::CVE_2013_1655.new
    # @check.debug = true
  end
  it "is detected if vulnerable version of puppet rubygem is detect when running on ruby 1.9.3 and 2.0.0" do
    @check.options[:dependencies]=[{:name=>"puppet", :version=>'2.7.20'}]
    @check.options[:detected_ruby] = {:engine=>"ruby", :version=>"1.9.3", :patchlevel=>"p342"}
    @check.vuln?.should   == true
  end
  it "is ignored if only vulnerable version of puppet rubygem has been found" do 
    @check.options[:detected_ruby] = {:engine=>"ruby", :version=>"1.8.7", :patchlevel=>"p358"}
    @check.vuln?.should   == false
  end

  it "is ignored if only the vulnerable ruby interpreter version has been found" do
    @check.options[:dependencies]=[{:name=>"puppet", :version=>'8.7.21'}]
    @check.options[:detected_ruby] = {:engine=>"ruby", :version=>"1.9.3", :patchlevel=>"p342"}
    # @check.dump_status
    @check.vuln?.should   == false
  end

  it "is ignored if none of the prerequisites have been met" do
    @check.options[:dependencies]=[{:name=>"puppet", :version=>'8.7.21'}]
    @check.options[:detected_ruby] = {:engine=>"ruby", :version=>"1.8.7", :patchlevel=>"p342"}
    # @check.dump_status
    @check.vuln?.should   == false
  end
end

Version data entries

11 entries across 11 versions & 1 rubygems

Version Path
dawnscanner-1.6.1 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.6.0 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.5.2 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.5.1 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.5.0 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.4.2 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.4.1 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.4.0 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.3.5 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.3.1 spec/lib/kb/cve_2013_1655_spec.rb
dawnscanner-1.3.0 spec/lib/kb/cve_2013_1655_spec.rb