chef/travis-cookbooks/ci_environment/perlbrew/recipes/default.rb in the ciborg gem 3.0.0 for Ruby allows local users to write to arbitrary files and gain privileges via a symlink attack on /tmp/perlbrew-installer.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-0272 chef/travis-cookbooks/ci_environment/perlbrew/recipes/default.rb in the ciborg gem 3.0.0 for Ruby allows local users to write to arbitrary files and gain privileges via a symlink attack on /tmp/perlbrew-installer.
Github GHSA Github GHSA GHSA-g982-9r8g-6qxw Ciborg gem for Ruby allows local users to write files and gain privileges via Symlink
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T11:34:37.461Z

Reserved: 2014-07-17T00:00:00

Link: CVE-2014-5003

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-01-10T18:29:00.837

Modified: 2024-11-21T02:11:15.530

Link: CVE-2014-5003

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.