[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-5310-1 ruby-image-processing -- ruby-image-processing

ID: oval:org.secpod.oval:def:610328Date: (C)2023-01-04   (M)2023-07-06
Class: PATCHFamily: unix




It was discovered that ruby-image-processing, a ruby package that provides higher-level image processing helpers, is prone to a remote shell execution vulnerability when using the #apply method to apply a series of operations coming from unsanitized user input.

Platform:
Debian 11.x
Product:
ruby-image-processing
Reference:
DSA-5310-1
CVE-2022-24720
CVE    1
CVE-2022-24720

© SecPod Technologies