CVE-2013-0334
31.10.2014, 14:55
Bundler before 1.7, when multiple top-level source lines are used, allows remote attackers to install arbitrary gems by creating a gem with the same name as another gem in a different source.Enginsight
Vendor | Product | Version |
---|---|---|
bundler | bundler | 𝑥 < 1.7.0 |
opensuse | opensuse | 13.1 |
opensuse | opensuse | 13.2 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References