FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2008-4094

This CVE name corresponds to:

Entered Topic
2008-09-10 rubygem-rails -- SQL injection vulnerability

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2008-4094
Phase Assigned(20080915)

Description

Multiple SQL injection vulnerabilities in Ruby on Rails before 2.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) :limit and (2) :offset parameters, related to ActiveRecord, ActiveSupport, ActiveResource, ActionPack, and ActionMailer.

References

Source Reference
MLIST [oss-security] 20080913 CVE request: Ruby on Rails <2.1.1 :limit and :offset SQL injection
MLIST [oss-security] 20080915 Re: CVE request: Ruby on Rails <2.1.1 :limit and :offset SQL injection
MISC http://blog.innerewut.de/2008/6/16/why-you-should-upgrade-to-rails-2-1
MISC http://www.rorsecurity.info/2008/09/08/sql-injection-issue-in-limit-and-offset-parameter/
CONFIRM http://rails.lighthouseapp.com/projects/8994/tickets/288
CONFIRM http://rails.lighthouseapp.com/projects/8994/tickets/964
CONFIRM http://gist.github.com/8946
SUSE SUSE-SR:2008:027
BID 31176
SECTRACK 1020871
VUPEN ADV-2008-2562
SECUNIA 31875
SECUNIA 31909
SECUNIA 31910
XF rubyonrails-activerecord-sql-injection(45109)