VYPR
High severityNVD Advisory· Published Oct 11, 2013· Updated Jun 16, 2026

CVE-2013-4203

CVE-2013-4203

Description

The self.run_gpg function in lib/rgpg/gpg_helper.rb in the rgpg gem before 0.2.3 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
rgpgRubyGems
< 0.2.30.2.3

Affected products

4
  • Richard Cook/Rgpg3 versions
    cpe:2.3:a:richard_cook:rgpg:*:-:*:*:*:ruby:*:*+ 2 more
    • cpe:2.3:a:richard_cook:rgpg:*:-:*:*:*:ruby:*:*range: <=0.2.2
    • cpe:2.3:a:richard_cook:rgpg:0.2.0:-:*:*:*:ruby:*:*
    • cpe:2.3:a:richard_cook:rgpg:0.2.1:-:*:*:*:ruby:*:*
  • ghsa-coords
    Range: < 0.2.3

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.