The sqlite3-ruby gem in the rubygem-sqlite3 package before 1.2.4-0.5.1 in SUSE Linux Enterprise (SLE) 11 SP1 uses weak permissions for unspecified files, which allows local users to gain privileges via unknown vectors.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://bugzilla.novell.com/show_bug.cgi?id=685928 | |
http://www.securityfocus.com/bid/47694 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/67263 | vdb entry |
http://www.osvdb.org/72180 | vdb entry |
http://secunia.com/advisories/44418 | third party advisory vendor advisory |
http://support.novell.com/security/cve/CVE-2011-0995.html |