The sqlite3-ruby gem in the rubygem-sqlite3 package before 1.2.4-0.5.1 in SUSE Linux Enterprise (SLE) 11 SP1 uses weak permissions for unspecified files, which allows local users to gain privileges via unknown vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Rubygem-sqlite3 | Rubyforge | * | 1.2.3 (including) |
Rubygem-sqlite3 | Rubyforge | 1.2.0 (including) | 1.2.0 (including) |
Rubygem-sqlite3 | Rubyforge | 1.2.1 (including) | 1.2.1 (including) |
Rubygem-sqlite3 | Rubyforge | 1.2.2 (including) | 1.2.2 (including) |