Sha256: 1d2ee017dbfe00e5c2a3d401e1b5904f9ad0e425686be2d9bb0121398c6e59ac

Contents?: true

Size: 583 Bytes

Versions: 1

Compression:

Stored size: 583 Bytes

Contents

---
gem: ldap_fluff
cve: 2012-5604
osvdb: 90579
url: https://nvd.nist.gov/vuln/detail/CVE-2012-5604
title: Red Hat Subscription Asset Manager rubygem-ldap_fluff Active Directory Authentication Bypass
date: 2012-12-04
description: Red Hat Subscription Asset Manager contains a flaw in the
  rubygem-ldap_fluff component. The issue is triggered when using Microsoft
  Active Directory server as the authentication back-end. This may result in
  authentication no longer being enforced, allowing a remote attacker to
  trivially bypass it.
cvss_v2: 5.0
patched_versions:
  - ">= 0.1.3"

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.7.0.1 data/ruby-advisory-db/gems/ldap_fluff/CVE-2012-5604.yml