CVE-2013-1945: Low severity ruby vulnerability
Published Oct 31, 2019
·Updated
ruby193 uses an insecure LDLIBRARYPATH setting.
Affected Software
1 affected component
ruby-lang Ruby193
Event History
Oct 31, 2019
CVE Published
via MITRE·07:24 PM
Data Sourced
via MITRE·07:24 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2013-1945?
The severity of CVE-2013-1945 is low with a severity value of 3.3.
2
What is the affected software of CVE-2013-1945?
The affected software of CVE-2013-1945 is Ruby-lang Ruby193.
3
What is LD_LIBRARY_PATH?
LD_LIBRARY_PATH is an environment variable used by the operating system to specify the search path for shared libraries.
4
How does the insecure LD_LIBRARY_PATH setting impact security?
The insecure LD_LIBRARY_PATH setting in Ruby193 can allow an attacker to execute malicious code by manipulating the library loading process.
5
How can I fix the insecure LD_LIBRARY_PATH setting in Ruby193?
To fix the insecure LD_LIBRARY_PATH setting in Ruby193, update to a version that addresses the vulnerability or apply the necessary patches.