CVE-2013-4457
02.11.2013, 18:55
The Cocaine gem 0.4.0 through 0.5.2 for Ruby allows context-dependent attackers to execute arbitrary commands via a crafted has object, related to recursive variable interpolation.
Vendor | Product | Version |
---|---|---|
thoughtbot | cocaine | 0.4.0 |
thoughtbot | cocaine | 0.4.1 |
thoughtbot | cocaine | 0.4.2 |
thoughtbot | cocaine | 0.5.0 |
thoughtbot | cocaine | 0.5.1 |
thoughtbot | cocaine | 0.5.2 |
𝑥
= Vulnerable software versions
References