Oval Definition:oval:org.opensuse.security:def:20141832
Revision Date:2022-06-30Version:1
Title:CVE-2014-1832
Description:

Phusion Passenger 4.0.37 allows local users to write to certain files and directories via a symlink attack on (1) control_process.pid or a (2) generation-* file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1831.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2014-1832
SUSE CVE-2014-1832
Platform(s):openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • ruby2.7-rubygem-passenger-6.0.8-3.2 is installed
  • OR ruby3.0-rubygem-passenger-6.0.8-3.2 is installed
  • OR rubygem-passenger-6.0.8-3.2 is installed
  • OR rubygem-passenger-apache2-6.0.8-3.2 is installed
  • OR rubygem-passenger-nginx-6.0.8-3.2 is installed
  • BACK