CVE-2017-8418 - CVE House
Back to Database
Status published Low CVE-2017-8418

RuboCop 0.48.1 and earlier does not use /tmp in safe...

Vulnerability Description

RuboCop 0.48.1 and earlier does not use /tmp in safe way, allowing local users to exploit this to tamper with cache files belonging to other users.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-8418

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

rubocop project

View all reports →

Affected Software

rubocop
Vulnerable Versions:
0

Timeline

Official Publish: May 2nd, 2017
Last Modified: September 16th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.