Sha256: 0e1653d7c09bc564087757242024779fd65b23063851c9a5b8ab3fa8606744ea

Contents?: true

Size: 592 Bytes

Versions: 1

Compression:

Stored size: 592 Bytes

Contents

---
gem: bitcoin_vanity
cve: 2019-15224
ghsa: 333g-rpr4-7hxq
url: https://github.com/rubygems/rubygems.org/issues/2097
date: 2019-08-20
title: Code execution backdoor in bitcoin_vanity
description: |
  The bitcoin_vanity gem 4.3.3 for Ruby, as distributed on RubyGems.org, included a code-execution
  backdoor inserted by a third party.

  No unaffected version is known to exist, as the gem appears to have been entirely removed.
unaffected_versions:
  - "< 4.3.3"
  - "> 4.3.3"
related:
  url:
    - https://github.com/rubygems/rubygems.org/wiki/Gems-yanked-and-accounts-locked#19-aug-2019

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.7.0.1 data/ruby-advisory-db/gems/bitcoin_vanity/CVE-2019-15224.yml