lib/string_utf_support.rb in the Arabic Prawn 0.0.1 gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) downloaded_file or (2) url variable.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-0250 lib/string_utf_support.rb in the Arabic Prawn 0.0.1 gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) downloaded_file or (2) url variable.
Github GHSA Github GHSA GHSA-hgmw-x865-hf9x Arabic Prawn allows remote attackers to execute arbitrary commands via shell metacharacters
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T10:06:00.480Z

Reserved: 2014-03-12T00:00:00

Link: CVE-2014-2322

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-05-02T14:55:07.217

Modified: 2025-04-12T10:46:40.837

Link: CVE-2014-2322

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.