First published: Thu Oct 31 2019(Updated: )
ruby193 uses an insecure LD_LIBRARY_PATH setting.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ruby-lang Ruby193 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2013-1945 is low with a severity value of 3.3.
The affected software of CVE-2013-1945 is Ruby-lang Ruby193.
LD_LIBRARY_PATH is an environment variable used by the operating system to specify the search path for shared libraries.
The insecure LD_LIBRARY_PATH setting in Ruby193 can allow an attacker to execute malicious code by manipulating the library loading process.
To fix the insecure LD_LIBRARY_PATH setting in Ruby193, update to a version that addresses the vulnerability or apply the necessary patches.