CVE Vulnerabilities

CVE-2011-0995

Published: May 13, 2011 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The sqlite3-ruby gem in the rubygem-sqlite3 package before 1.2.4-0.5.1 in SUSE Linux Enterprise (SLE) 11 SP1 uses weak permissions for unspecified files, which allows local users to gain privileges via unknown vectors.

Affected Software

Name Vendor Start Version End Version
Rubygem-sqlite3 Rubyforge * 1.2.3 (including)
Rubygem-sqlite3 Rubyforge 1.2.0 (including) 1.2.0 (including)
Rubygem-sqlite3 Rubyforge 1.2.1 (including) 1.2.1 (including)
Rubygem-sqlite3 Rubyforge 1.2.2 (including) 1.2.2 (including)

References