Sha256: 5f4f37d6d22886e0aadb308951394f2ed5aaf9e77db79b64ccdde9b2df98dc44

Contents?: true

Size: 524 Bytes

Versions: 2

Compression:

Stored size: 524 Bytes

Contents

---
gem: fog-dragonfly
cve: 2013-1756
osvdb: 90647
url: http://www.osvdb.org/show/osvdb/90647
title: Dragonfly Gem for Ruby Crafted Request Parsing Remote Code Execution
date: 2013-02-19
description: |
  Dragonfly Gem for Ruby contains a flaw that is triggered during the parsing
  of a specially crafted request. This may allow a remote attacker to execute
  arbitrary code.

  This gem has been renamed. Please use "dragonfly" from now on.
cvss_v2: 7.5
unaffected_versions:
  - "< 0.7.0"
patched_versions:
  - ">= 0.9.14"

Version data entries

2 entries across 2 versions & 1 rubygems

Version Path
bundler-budit-0.6.2 data/ruby-advisory-db/gems/fog-dragonfly/OSVDB-90647.yml
bundler-budit-0.6.1 data/ruby-advisory-db/gems/fog-dragonfly/OSVDB-90647.yml