CVE-2013-0334
31.10.2014, 14:55
Bundler before 1.7, when multiple top-level source lines are used, allows remote attackers to install arbitrary gems by creating a gem with the same name as another gem in a different source.Enginsight
| Vendor | Product | Version |
|---|---|---|
| bundler | bundler | 𝑥 < 1.7.0 |
| opensuse | opensuse | 13.1 |
| opensuse | opensuse | 13.2 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References