Publish Advisories

GHSA-rp63-jfmw-532w
GHSA-rhgq-vv9x-j4p5
This commit is contained in:
advisory-database[bot]
2023-09-05 22:05:55 +00:00
parent 96b3e97ffb
commit e03895039e
2 changed files with 13 additions and 3 deletions
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rp63-jfmw-532w",
"modified": "2023-01-24T14:58:10Z",
"modified": "2023-09-05T22:04:31Z",
"published": "2017-10-24T18:33:38Z",
"aliases": [
"CVE-2012-2140"
],
"summary": "Mail Improper Input Validation vulnerability",
"summary": "Mail Gem Improper Input Validation vulnerability",
"details": "The Mail gem before 2.4.3 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a (1) sendmail or (2) exim delivery.",
"severity": [
@@ -17,6 +17,11 @@
"ecosystem": "RubyGems",
"name": "mail"
},
"ecosystem_specific": {
"affected_functions": [
""
]
},
"ranges": [
{
"type": "ECOSYSTEM",
@@ -20,6 +20,11 @@
"ecosystem": "RubyGems",
"name": "lawn-login"
},
"ecosystem_specific": {
"affected_functions": [
""
]
},
"versions": [
"0.0.7"
]
@@ -40,7 +45,7 @@
},
{
"type": "WEB",
"url": "http://www.vapid.dhs.org/advisories/lawn-login-0.0.7.html"
"url": "https://web.archive.org/web/20200229060607/http://www.vapid.dhs.org/advisories/lawn-login-0.0.7.html"
}
],
"database_specific": {