Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Gentoo: GLSA-200510-05 Normal: Ruby Security Bypass Exploit Risk

gentoo
Calendar Grey October 6, 2005
Scroller Gentoo
A vulnerability in Ruby on Gentoo could lead to security bypass issues. For your protection, make sure to upgrade. Check Gentoo's advisory for further insights.
Ruby is vulnerable to a security bypass of the safe level mechanism.

Summary

Gentoo Linux Security Advisory GLSA 200510-05 https://security.gentoo.org/ Severity: Normal Title: Ruby: Security bypass vulnerability Date: October 06, 2005 Bugs: #106996 ID: 200510-05

Synopsis ======= Ruby is vulnerable to a security bypass of the safe level mechanism.
Background ========= Ruby is an interpreted scripting language for quick and easy object-oriented programming. Ruby supports the safe execution of untrusted code using a safe level and taint flag mechanism.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-lang/ruby < 1.8.3 >= 1.8.3
========== Dr. Yutaka Oiwa discovered that Ruby fails to properly enforce safe level protections.
Im...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround