AVG-2615 log
Package | ruby-bundler |
Status | Vulnerable |
Severity | Low |
Type | arbitrary command execution |
Affected | 2.2.26-1 |
Fixed | Unknown |
Current |
2.5.16-1 [extra-testing] 2.5.11-2 [extra] |
Ticket | Create |
Created | Wed Dec 8 21:28:23 2021 |
Issue | Severity | Remote | Type | Description |
---|---|---|---|---|
CVE-2021-43809 | Low | Yes | Arbitrary command execution | In bundler versions before 2.2.33, when working with untrusted and apparently harmless Gemfile's, it is not expected that they lead to execution of external... |