Sha256: 10de4284b9c71ad0eb69484183819074888985d7f322d5e286ed4a2b47bee516

Contents?: true

Size: 445 Bytes

Versions: 5

Compression:

Stored size: 445 Bytes

Contents

--- 
gem: fileutils
cve: 2013-2516
osvdb: 90717
url: http://osvdb.org/show/osvdb/90717
title: fileutils Gem for Ruby file_utils.rb Crafted URL Handling Remote Command Execution
date: 2013-02-28
description: fileutils Gem for Ruby contains a flaw in file_utils.rb. The issue is triggered when handling a specially crafted URL containing a command after a delimiter (;). This may allow a remote attacker to potentially execute arbitrary commands.

Version data entries

5 entries across 5 versions & 2 rubygems

Version Path
bundler-budit-0.6.2 data/ruby-advisory-db/gems/fileutils/OSVDB-90717.yml
bundler-budit-0.6.1 data/ruby-advisory-db/gems/fileutils/OSVDB-90717.yml
bundler-audit-0.6.1 data/ruby-advisory-db/gems/fileutils/OSVDB-90717.yml
bundler-audit-0.6.0 data/ruby-advisory-db/gems/fileutils/OSVDB-90717.yml
bundler-audit-0.5.0 data/ruby-advisory-db/gems/fileutils/OSVDB-90717.yml