{"schema_version":"1.7.3","id":"GHSA-ggxm-pgc9-g7fp","published":"2021-09-01T18:53:15Z","modified":"2024-11-14T01:15:50.703159Z","aliases":["CVE-2021-31799"],"summary":"Arbitrary Code Execution in Rdoc","details":"In RDoc 3.11 through 6.x before 6.3.1, as distributed with Ruby through 3.0.1, it is possible to execute arbitrary code via | and tags in a filename.","affected":[{"package":{"name":"rdoc","ecosystem":"RubyGems","purl":"pkg:gem/rdoc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"3.11"},{"fixed":"6.1.2.1"}]}],"versions":["3.11","3.12","3.12.1","3.12.2","4.0.0","4.0.0.preview2","4.0.0.preview2.1","4.0.0.rc.2","4.0.0.rc.2.1","4.0.1","4.1.0","4.1.0.preview.3","4.1.1","4.1.2","4.2.0","4.2.1","4.2.2","4.3.0","5.0.0","5.0.0.beta1","5.0.0.beta2","5.0.1","5.1.0","6.0.0","6.0.0.beta1","6.0.0.beta2","6.0.0.beta3","6.0.0.beta4","6.0.1","6.0.1.1","6.0.2","6.0.3","6.0.4","6.1.0","6.1.0.beta1","6.1.0.beta2","6.1.0.beta3","6.1.1","6.1.2"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2021/09/GHSA-ggxm-pgc9-g7fp/GHSA-ggxm-pgc9-g7fp.json"}},{"package":{"name":"rdoc","ecosystem":"RubyGems","purl":"pkg:gem/rdoc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.2.1.1"}]}],"versions":["6.2.0","6.2.1"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2021/09/GHSA-ggxm-pgc9-g7fp/GHSA-ggxm-pgc9-g7fp.json"}},{"package":{"name":"rdoc","ecosystem":"RubyGems","purl":"pkg:gem/rdoc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"6.3.0"},{"fixed":"6.3.1"}]}],"versions":["6.3.0"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2021/09/GHSA-ggxm-pgc9-g7fp/GHSA-ggxm-pgc9-g7fp.json"}}],"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-31799"},{"type":"WEB","url":"https://github.com/ruby/rdoc/commit/a7f5d6ab88632b3b482fe10611382ff73d14eed7"},{"type":"PACKAGE","url":"https://github.com/ruby/rdoc"},{"type":"WEB","url":"https://github.com/rubysec/ruby-advisory-db/blob/master/gems/rdoc/CVE-2021-31799.yml"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2021/10/msg00009.html"},{"type":"WEB","url":"https://security-tracker.debian.org/tracker/CVE-2021-31799"},{"type":"WEB","url":"https://security.gentoo.org/glsa/202401-05"},{"type":"WEB","url":"https://security.netapp.com/advisory/ntap-20210902-0004"},{"type":"WEB","url":"https://www.oracle.com/security-alerts/cpuapr2022.html"},{"type":"WEB","url":"https://www.ruby-lang.org/en/news/2021/05/02/os-command-injection-in-rdoc"}],"database_specific":{"cwe_ids":["CWE-74","CWE-77","CWE-78"],"github_reviewed":true,"github_reviewed_at":"2021-08-02T18:08:41Z","nvd_published_at":"2021-07-30T14:15:00Z","severity":"HIGH"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}