CVE-2012-1098
published 2012-03-13CVE-2012-1098: Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject…
PriorityP418medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
2.11%
79.9th percentile
Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving a SafeBuffer object that is manipulated through certain methods.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | rails | < rails 2.3.14 (bookworm) | rails 2.3.14 (bookworm) |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | — | — |
| rubyonrails | rails | >= 0 < 2.3.14 | 2.3.14 |
| rubyonrails | rails | >= 0 < 2.3.14 | 2.3.14 |
| rubyonrails | rails | >= 0 < 2.3.14 | 2.3.14 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe)
vendor_redhat·2012-03-01·CVSS 4.3
CVE-2012-1098 [MEDIUM] CWE-79 rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe)
rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe)
Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving a SafeBuffer object that is manipulated through certain methods.
Package: rubygem-activesupport (Red Hat Subscription Asset Manager) - Affected
Debian
CVE-2012-1098: rails - Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3...
vendor_debian·2012·CVSS 4.3
CVE-2012-1098 [MEDIUM] CVE-2012-1098: rails - Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3...
Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving a SafeBuffer object that is manipulated through certain methods.
Scope: local
bookworm: resolved (fixed in 2.3.14)
bullseye: resolved (fixed in 2.3.14)
forky: resolved (fixed in 2.3.14)
sid: resolved (fixed in 2.3.14)
trixie: resolved (fixed in 2.3.14)
GHSA
activesupport Cross-site Scripting vulnerability
ghsa·2017-10-24
CVE-2012-1098 [MEDIUM] CWE-79 activesupport Cross-site Scripting vulnerability
activesupport Cross-site Scripting vulnerability
Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving a SafeBuffer object that is manipulated through certain methods.
OSV
activesupport Cross-site Scripting vulnerability
osv·2017-10-24
CVE-2012-1098 [MEDIUM] activesupport Cross-site Scripting vulnerability
activesupport Cross-site Scripting vulnerability
Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving a SafeBuffer object that is manipulated through certain methods.
OSV
CVE-2012-1098: Cross-site scripting (XSS) vulnerability in Ruby on Rails 3
osv·2012-03-13·CVSS 4.3
CVE-2012-1098 [MEDIUM] CVE-2012-1098: Cross-site scripting (XSS) vulnerability in Ruby on Rails 3
Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving a SafeBuffer object that is manipulated through certain methods.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-1098 rubygem-actionpack, rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe) [fedora-16]
bugzilla·2012-03-05·CVSS 4.3
CVE-2012-1098 [MEDIUM] CVE-2012-1098 rubygem-actionpack, rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe) [fedora-16]
CVE-2012-1098 rubygem-actionpack, rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe) [fedora-16]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link
Bugzilla
CVE-2012-1098 rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe)
bugzilla·2012-03-02·CVSS 4.3
CVE-2012-1098 [MEDIUM] CVE-2012-1098 rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe)
CVE-2012-1098 rubygem-activesupport: XSS in SafeBuffer#[] (unescaped safe buffers can be marked as safe)
A cross-site scripting (XSS) flaw was found in the way the String class, used in Ruby on Rails, performed HTML escaping of SafeBuffer objects, when such objects were manipulated directly via '[]' method or other methods, also returning new instances of SafeBuffer object. By using these methods, such newly returned SafeBuffer instances would be inadvertently marked as HTML safe. If a Ruby on Rails application used SafeBuffer objects this way, a remote attacker could provide a specially-crafted input, which once processed by such SafeBuffer instance would pass the HTML escaping test without further filtering, possibly leading to arbitrary HTML or webscript execution.
References:
[1] htt
Bugzilla
rubygem-actionpack various flaws [fedora-all]
bugzilla·2012-03-02·CVSS 4.3
[MEDIUM] rubygem-actionpack various flaws [fedora-all]
rubygem-actionpack various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=799275
Please note: thi
http://groups.google.com/group/rubyonrails-security/msg/1c2e01a5e42722c9?dmode=source&output=gplainhttp://lists.fedoraproject.org/pipermail/package-announce/2012-March/075675.htmlhttp://weblog.rubyonrails.org/2012/3/1/ann-rails-3-0-12-has-been-releasedhttp://www.openwall.com/lists/oss-security/2012/03/02/6http://www.openwall.com/lists/oss-security/2012/03/03/1https://bugzilla.redhat.com/show_bug.cgi?id=799275http://groups.google.com/group/rubyonrails-security/msg/1c2e01a5e42722c9?dmode=source&output=gplainhttp://lists.fedoraproject.org/pipermail/package-announce/2012-March/075675.htmlhttp://weblog.rubyonrails.org/2012/3/1/ann-rails-3-0-12-has-been-releasedhttp://www.openwall.com/lists/oss-security/2012/03/02/6http://www.openwall.com/lists/oss-security/2012/03/03/1https://bugzilla.redhat.com/show_bug.cgi?id=799275
2012-03-13
Published