First published: Mon Sep 30 2013(Updated: )
ext/common/ServerInstanceDir.h in Phusion Passenger gem before 4.0.6 for Ruby allows local users to gain privileges or possibly change the ownership of arbitrary directories via a symlink attack on a directory with a predictable name in /tmp/.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Phusion Passenger | <=4.0.5 | |
Phusion Passenger | =4.0.1 | |
Phusion Passenger | =4.0.2 | |
Phusion Passenger | =4.0.3 | |
Phusion Passenger | =4.0.4 | |
Ruby |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4136 has a medium severity level due to its potential for local privilege escalation via symlink attacks.
To fix CVE-2013-4136, upgrade Phusion Passenger to version 4.0.6 or later.
CVE-2013-4136 affects users of Phusion Passenger versions before 4.0.6.
The impact of CVE-2013-4136 includes the potential for local users to gain elevated privileges and change ownership of arbitrary directories.
CVE-2013-4136 is exploitable on systems where Phusion Passenger is installed and configured insecurely.