Sha256: 36b41b04ad582374153a19d7cb8bb403485ff059e7572ab221c85fe3ba454306

Contents?: true

Size: 547 Bytes

Versions: 1

Compression:

Stored size: 547 Bytes

Contents

---
gem: xaviershay-dm-rails
cve: 2015-2179
osvdb: 118579
url: https://nvd.nist.gov/vuln/detail/CVE-2015-2179
title: |
  xaviershay-dm-rails Gem for Ruby exposes sensitive information via the process table
date: 2015-02-17
description: |
  xaviershay-dm-rails Gem for Ruby contains a flaw in the execute() function
  in /datamapper/dm-rails/blob/master/lib/dm-rails/storage.rb. The issue is
  due to the function exposing sensitive information via the process table.
  This may allow a local attack to gain access to MySQL credential information.

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.7.0.1 data/ruby-advisory-db/gems/xaviershay-dm-rails/CVE-2015-2179.yml