| /// File Name: | USN-621-1.txt | Description:
| Ubuntu Security Notice 621-1 - Drew Yao discovered several vulnerabilities in Ruby which lead to integer overflows. If a user or automated system were tricked into running a malicious script, an attacker could cause a denial of service or execute arbitrary code with the privileges of the user invoking the program. Drew Yao discovered that Ruby did not sanitize its input when using ALLOCA. If a user or automated system were tricked into running a malicious script, an attacker could cause a denial of service via memory corruption. | | Homepage: | http://security.ubuntu.com/ | | File Size: | 33872 | | Related CVE(s): | CVE-2008-2662, CVE-2008-2663, CVE-2008-2725, CVE-2008-2726, CVE-2008-2664 | | Last Modified: | Jun 27 12:04:23 2008 | | MD5 Checksum: | 3f9b36d1f7954def85af5e64b364ce99 |
|