[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2012-079 --- rubygems

ID: oval:org.secpod.oval:def:1601262Date: (C)2020-11-27   (M)2022-01-13
Class: PATCHFamily: unix




RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.

Platform:
Amazon Linux AMI
Product:
rubygems
Reference:
ALAS-2012-79
CVE-2012-2125
CVE    1
CVE-2012-2125
CPE    25
cpe:/o:amazon:linux
cpe:/a:rubygems:rubygems:1.8.10
cpe:/a:rubygems:rubygems:1.8.11
cpe:/a:rubygems:rubygems:1.8.12
...

© SecPod Technologies