Sha256: 91678bf39c041f8443df42160977d0ad26580469ef04033a9238e9f0429e333c

Contents?: true

Size: 446 Bytes

Versions: 9

Compression:

Stored size: 446 Bytes

Contents

---
gem: fastreader
cve: 2013-1876
osvdb: 91232
url: http://osvdb.org/show/osvdb/91232
title: fastreader Gem for Ruby URI Handling Arbitrary Command Injection 
date: 2013-03-13

description: fastreader Gem for Ruby contains a flaw that is triggered during the handling of specially crafted input passed via a URL that contains a ';' character. This may allow a context-dependent attacker to potentially execute arbitrary commands.

cvss_v2: 9.3

Version data entries

9 entries across 9 versions & 2 rubygems

Version Path
bundler-audit-0.4.0 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
bundler-audit-0.3.1 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
mrjoy-bundler-audit-0.3.3 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
mrjoy-bundler-audit-0.3.2 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
mrjoy-bundler-audit-0.3.1 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
bundler-audit-0.3.0 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
mrjoy-bundler-audit-0.2.1 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
bundler-audit-0.2.0 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml
mrjoy-bundler-audit-0.1.4 data/ruby-advisory-db/gems/fastreader/OSVDB-91232.yml