QID 997774
Date Published: 2024-03-19
QID 997774: Rubygems (Rubygems) Security Update for rotp (GHSA-x2h8-qmj4-g62f)
The Ruby One Time Password library (ROTP) is an open source library for generating and validating one time passwords. Affected versions had overly permissive default permissions. Users should patch to version 6.3.0. Users unable to patch may correct file permissions after installation.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-x2h8-qmj4-g62f for updates and patch information.
Vendor References
- GHSA-x2h8-qmj4-g62f -
github.com/advisories/GHSA-x2h8-qmj4-g62f
CVEs related to QID 997774
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-x2h8-qmj4-g62f | rotp |
|