Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Gentoo: GLSA-200608-20 High Severity: Ruby on Rails DoS Threat

gentoo
Calendar Grey August 14, 2006
Scroller Gentoo
Recent vulnerabilities in Ruby on Rails may present critical Denial of Service and code execution threats for Gentoo systems. Immediate updates are recommended.
Ruby on Rails has some weaknesses potentially allowing a Denial of Service and maybe the remote execution of arbitrary Ruby scripts.

Summary

Gentoo Linux Security Advisory GLSA 200608-20 https://security.gentoo.org/ Severity: High Title: Ruby on Rails: Several vulnerabilities Date: August 14, 2006 Bugs: #143369 ID: 200608-20

Synopsis ======= Ruby on Rails has some weaknesses potentially allowing a Denial of Service and maybe the remote execution of arbitrary Ruby scripts.
Background ========= Ruby on Rails is an open-source web framework.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-ruby/rails < 1.1.6 >= 1.1.6
========== The Ruby on Rails developers have corrected some weaknesses in action_controller/, relative to the handling of the user input and the LOAD_PATH variable. A re...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround