Posted on

CVE-2013-1889 (mod_ruid2)

mod_ruid2 before 0.9.8 improperly handles file descriptors which allows remote attackers to bypass security using a CGI script to break out of the chroot.