MGASA-2020-0121

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 06 Mar 2020, 16:13
Last modified:16 Apr 2026, 04:26

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

06 Mar 2020, 16:13
Published
Vulnerability first disclosed
16 Apr 2026, 04:26
Last Modified
Vulnerability information updated

Description

Updated ruby-rake packages fix security vulnerability Updated ruby-rake package fixes security vulnerability: There is an OS command injection vulnerability in Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character (CVE-2020-8130).

Affected Systems

  • mageiaruby-rake

    < 12.3.0-21.mga7

References (3)