Sha256: 86f1d30347b63c043fd19764091bc724cf5174c7b59ee3862ef1197d43383d78

Contents?: true

Size: 492 Bytes

Versions: 5

Compression:

Stored size: 492 Bytes

Contents

---
gem: kajam
cve: 2014-4999
osvdb: 108529
url: http://osvdb.org/show/osvdb/108529
title: kajam Gem for Ruby /dataset/lib/dataset/database/postgresql.rb Process List Local Plaintext Password Disclosure
date: 2014-06-30
description: |
  kajam Gem for Ruby contains a flaw in
  /dataset/lib/dataset/database/postgresql.rb that is triggered as the program
  exposes the MySQL or PostgreSQL password in the process list. This may allow
  a local attacker to gain access to password information.

Version data entries

5 entries across 5 versions & 2 rubygems

Version Path
bundler-budit-0.6.2 data/ruby-advisory-db/gems/kajam/OSVDB-108529.yml
bundler-budit-0.6.1 data/ruby-advisory-db/gems/kajam/OSVDB-108529.yml
bundler-audit-0.6.1 data/ruby-advisory-db/gems/kajam/OSVDB-108529.yml
bundler-audit-0.6.0 data/ruby-advisory-db/gems/kajam/OSVDB-108529.yml
bundler-audit-0.5.0 data/ruby-advisory-db/gems/kajam/OSVDB-108529.yml