Family: Gentoo Local Security Checks --> Category: infos
[GLSA-200510-05] Ruby: Security bypass vulnerability Vulnerability Scan
Vulnerability Scan Summary
Ruby: Security bypass vulnerability
Detailed Explanation for this Vulnerability Test
The remote host is affected by the vulnerability described in GLSA-200510-05
(Ruby: Security bypass vulnerability)
Dr. Yutaka Oiwa discovered that Ruby fails to properly enforce
safe level protections.
A possible hacker could exploit this vulnerability to execute arbitrary
code beyond the restrictions specified in each safe level.
There is no known workaround at this time.
All Ruby users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=dev-lang/ruby-1.8.3"
Threat Level: Medium
Click HERE for more information and discussions on this network vulnerability scan.