Sha256: 79368d487001bda68da87b7aa9aa6df2239dace82a713b1ef8e44714cb097c5f
Contents?: true
Size: 654 Bytes
Versions: 3
Compression:
Stored size: 654 Bytes
Contents
--- gem: bson cve: 2015-4412 url: http://sakurity.com/blog/2015/06/04/mongo_ruby_regexp.html title: Data Injection Vulnerability in bson Rubygem date: 2015-06-04 description: >- A flaw in the ObjectId validation regular expression can enable attackers to inject arbitrary information into a given BSON object. vendor_patch: - https://github.com/mongodb/mongo-ruby-driver/compare/6ae981167759d5819ba3d41e374e5b2af5b79077~1...9859a3ab9773a8a883eb8438b665a921cc991c71 - https://github.com/mongodb/bson-ruby/compare/7446d7c6764dfda8dc4480ce16d5c023e74be5ca...28f34978a85b689a4480b4d343389bf4886522e7 patched_versions: - "~> 1.12.3" - ">= 3.0.4"
Version data entries
3 entries across 3 versions & 1 rubygems