Lucene search

K
osvGoogleOSV:USN-4870-1
HistoryMar 15, 2021 - 10:59 p.m.

bundler vulnerability

2021-03-1522:59:20
Google
osv.dev
6

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

27.4%

It was discovered that Bundler incorrectly created directories with
insecure permissions in /tmp. An attacker could write malicious libraries
to this location for later execution.