Publish GHSA-w9vv-fvw8-j6q3

This commit is contained in:
advisory-database[bot]
2023-07-03 23:18:43 +00:00
parent ed9a00ee1e
commit 5de855239b
@@ -1,13 +1,13 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w9vv-fvw8-j6q3",
"modified": "2023-03-29T20:58:27Z",
"modified": "2023-07-03T23:17:23Z",
"published": "2022-05-14T03:48:04Z",
"aliases": [
"CVE-2014-4991"
],
"summary": "codders-dataset Process Table Local Plaintext Credential Disclosure",
"details": "(1) `lib/dataset/database/mysql.rb` and (2) `lib/dataset/database/postgresql.rb` in the codders-dataset gem 1.3.2.1 for Ruby place credentials on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.",
"details": "`lib/dataset/database/mysql.rb` and `lib/dataset/database/postgresql.rb` in the codders-dataset gem 1.3.2.1 for Ruby both place credentials on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.",
"severity": [
{
"type": "CVSS_V3",