CVE-2012-6135
published 2019-11-19CVE-2012-6135: RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.
PriorityP346high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
2.31%
81.5th percentile
RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| phusion | passenger | — | — |
| phusion | passenger | >= 0 < 4.0.0.rc4 | 4.0.0.rc4 |
| redhat | openshift | — | — |
| ruby-passenger | ruby-passenger | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes
vendor_redhat·2013-02-17·CVSS 7.5
CVE-2012-6135 [HIGH] rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes
rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes
RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.
Statement: Not vulnerable. This issue did not affect the versions of rubygem-passenger as shipped with Red Hat OpenShift Enterprise 1.2 do not include the vulnerable code.
Package: ruby193-rubygem-passenger (OpenShift Enterprise 1) - Not affected
Package: rubygem-passenger (OpenShift Enterprise 1) - Not affected
OSV
RubyGems passenger gem allows remote attackers to delete files
osv·2022-04-23
CVE-2012-6135 [HIGH] RubyGems passenger gem allows remote attackers to delete files
RubyGems passenger gem allows remote attackers to delete files
RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.
Affects both open source and Enterprise versions (4.0.0.beta1, 4.0.0.beta2).
GHSA
RubyGems passenger gem allows remote attackers to delete files
ghsa·2022-04-23
CVE-2012-6135 [HIGH] CWE-20 RubyGems passenger gem allows remote attackers to delete files
RubyGems passenger gem allows remote attackers to delete files
RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process.
Affects both open source and Enterprise versions (4.0.0.beta1, 4.0.0.beta2).
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes
bugzilla·2013-03-05·CVSS 7.5
CVE-2012-6135 [HIGH] CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes
CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes
foobarwidget reports:
It fixes a security issue, but unless you're on a shared environment it's not
a grave issue. It allows an application process to delete an arbitrary file,
even a file it does not have permission to, but only during application
startup (i.e. during evaluation of config.ru). Once the application is started,
it cannot be exploited, so external visitors cannot influence this. If you
deploy arbitrary untrusted apps on your server then this issue can be a
problem. If all your apps are trusted (e.g. because your organization wrote
them) then there's no problem.
https://github.com/FooBarWidget/passenger/commit/8c6693e0818772c345c979840d28312c2edd4ba4#co
Bugzilla
CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes [fedora-all]
bugzilla·2013-03-05·CVSS 7.5
CVE-2012-6135 [HIGH] CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes [fedora-all]
CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi
Bugzilla
CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes [epel-6]
bugzilla·2013-03-05·CVSS 7.5
CVE-2012-6135 [HIGH] CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes [epel-6]
CVE-2012-6135 rubygem-passenger: untrusted apps Security check socket filenames reported by spawned application processes [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodh
http://www.openwall.com/lists/oss-security/2013/03/02/1https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-6135https://exchange.xforce.ibmcloud.com/vulnerabilities/82533https://security-tracker.debian.org/tracker/CVE-2012-6135https://www.securityfocus.com/bid/58259http://www.openwall.com/lists/oss-security/2013/03/02/1https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-6135https://exchange.xforce.ibmcloud.com/vulnerabilities/82533https://security-tracker.debian.org/tracker/CVE-2012-6135https://www.securityfocus.com/bid/58259
2019-11-19
Published