Lucene search

K
osvGoogleOSV:GHSA-WR5J-Q359-6VR2
HistoryMay 14, 2022 - 3:48 a.m.

backup-agoddard and backup_checksum have Information Exposure vulnerability

2022-05-1403:48:04
Google
osv.dev
6
information exposure
backup-agoddard
backup_checksum
utility.rb
openssl
sensitive information
local users
gem
software

EPSS

0

Percentile

5.1%

(1) lib/backup/cli/utility.rb in the backup-agoddard gem 3.0.28 and (2) lib/backup/cli/utility.rb in the backup_checksum gem 3.0.23 for Ruby place credentials on the openssl command line, which allows local users to obtain sensitive information by listing the process.

EPSS

0

Percentile

5.1%

Related for OSV:GHSA-WR5J-Q359-6VR2