Sha256: 3ac3320f5a60e788deecda1944971f3b5db0e08e396ba622c1fd4e13abac0f19

Contents?: true

Size: 517 Bytes

Versions: 1

Compression:

Stored size: 517 Bytes

Contents

---
gem: passenger
cve: 2014-1832
osvdb: 102613
url: https://nvd.nist.gov/vuln/detail/CVE-2014-1832
title: Phusion Passenger Server Instance Directory Creation Local Symlink File Overwrite
date: 2014-01-29
description: Phusion Passenger contains a flaw as the program creates the server instance
  directory insecurely. It is possible for a local attacker to use a symlink attack against
  the directory to cause the program to unexpectedly overwrite an arbitrary file.
cvss_v2: 2.1
patched_versions:
  - ">= 4.0.38"

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.7.0.1 data/ruby-advisory-db/gems/passenger/CVE-2014-1832.yml