Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Gentoo: GLSA-200712-09 Normal Severity: Ruby-GNOME2 Code Execution Risk

gentoo
Calendar Grey December 9, 2007
Scroller Gentoo
A vulnerability in Ruby-GNOME2's handling of format strings may enable malicious actors to run arbitrary code. Urgent patching is advised.
A format string error has been discovered in Ruby-GNOME2, possibly leading to the execution of arbitrary code.

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200712-09
                                            https://security.gentoo.org/

Severity: Normal Title: Ruby-GNOME2: Format string error Date: December 09, 2007 Bugs: #200623 ID: 200712-09

Synopsis ======= A format string error has been discovered in Ruby-GNOME2, possibly leading to the execution of arbitrary code.
Background ========= Ruby-GNOME2 is a set of bindings for using GTK+ within the Ruby programming language.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-ruby/ruby-gtk2 < 0.16.0-r2 >= 0.16.0-r2
========== Chris Rohlf discovered that the "Gtk::MessageDialog.new()" method in the file gtk/src/rbgtkmessagedialo...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround