S-344: Ruby Security Update


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) S-344: Ruby Security Update
# 1  
Old 07-29-2008
S-344: Ruby Security Update

Multiple interger overflows to a heap overflow were discovered in the array- and string-handling code used by Ruby. The risk is MEDIUM. An attacker could use these flaws to crash a Ruby application or, possibly, execute arbitrary code with the privileges of the Ruby application using untrusted inputs in array or string operations.


More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question