Sha256: bc137c7d66ae663887a97d02470723550a63f811ebfb7f6e47da8699b2963a88
Contents?: true
Size: 517 Bytes
Versions: 1
Compression:
Stored size: 517 Bytes
Contents
--- gem: passenger cve: 2014-1831 osvdb: 102613 url: https://nvd.nist.gov/vuln/detail/CVE-2014-1831 title: Phusion Passenger Server Instance Directory Creation Local Symlink File Overwrite date: 2014-01-28 description: Phusion Passenger contains a flaw as the program creates the server instance directory insecurely. It is possible for a local attacker to use a symlink attack against the directory to cause the program to unexpectedly overwrite an arbitrary file. cvss_v2: 2.1 patched_versions: - ">= 4.0.37"
Version data entries
1 entries across 1 versions & 1 rubygems
Version | Path |
---|---|
bundler-audit-0.7.0.1 | data/ruby-advisory-db/gems/passenger/CVE-2014-1831.yml |