This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Yukihiro Matsumoto First view 2005-10-07
Product Ruby Last view 2006-04-20
Version 1.6.3 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:yukihiro_matsumoto:ruby

Activity : Overall

Related : CVE

  Date Alert Description
5 2006-04-20 CVE-2006-1931

The HTTP/XMLRPC server in Ruby before 1.8.2 uses blocking sockets, which allows attackers to cause a denial of service (blocked connections) via a large amount of data.

7.5 2005-10-07 CVE-2005-2337

Ruby 1.6.x up to 1.6.8, 1.8.x up to 1.8.2, and 1.9.0 development up to 2005-09-01 allows attackers to bypass safe level and taint flag protections and execute disallowed code when Ruby processes a program through standard input (stdin).

Open Source Vulnerability Database (OSVDB)

id Description
24972 Ruby HTTP/XMLRPC Blocking Sockets DoS
19610 Ruby eval.c safe_level Restriction Bypass

OpenVAS Exploits

id Description
2009-11-17 Name : Mac OS X Version
File : nvt/macosx_version.nasl
2008-09-24 Name : Gentoo Security Advisory GLSA 200510-05 (ruby)
File : nvt/glsa_200510_05.nasl
2008-09-24 Name : Gentoo Security Advisory GLSA 200605-11 (ruby)
File : nvt/glsa_200605_11.nasl
2008-09-04 Name : FreeBSD Ports: ruby, ruby_static
File : nvt/freebsd_ruby2.nasl
2008-01-17 Name : Debian Security Advisory DSA 1157-1 (ruby1.8)
File : nvt/deb_1157_1.nasl
2008-01-17 Name : Debian Security Advisory DSA 860-1 (ruby)
File : nvt/deb_860_1.nasl
2008-01-17 Name : Debian Security Advisory DSA 862-1 (ruby1.8)
File : nvt/deb_862_1.nasl
2008-01-17 Name : Debian Security Advisory DSA 864-1 (ruby1.8)
File : nvt/deb_864_1.nasl

Nessus® Vulnerability Scanner

id Description
2006-10-14 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-1157.nasl - Type: ACT_GATHER_INFO
2006-07-05 Name: The remote CentOS host is missing one or more security updates.
File: centos_RHSA-2006-0427.nasl - Type: ACT_GATHER_INFO
2006-07-03 Name: The remote CentOS host is missing one or more security updates.
File: centos_RHSA-2005-799.nasl - Type: ACT_GATHER_INFO
2006-05-13 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-200605-11.nasl - Type: ACT_GATHER_INFO
2006-05-13 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2006-0427.nasl - Type: ACT_GATHER_INFO
2006-05-13 Name: The remote FreeBSD host is missing one or more security-related updates.
File: freebsd_pkg_1daea60a471911dab5c60004614cc33d.nasl - Type: ACT_GATHER_INFO
2006-05-12 Name: The remote operating system is missing a vendor-supplied patch.
File: macosx_SecUpd2006-003.nasl - Type: ACT_GATHER_INFO
2006-04-26 Name: The remote Mandrake Linux host is missing one or more security updates.
File: mandrake_MDKSA-2006-079.nasl - Type: ACT_GATHER_INFO
2006-04-26 Name: The remote Ubuntu host is missing one or more security-related patches.
File: ubuntu_USN-273-1.nasl - Type: ACT_GATHER_INFO
2006-01-15 Name: The remote Ubuntu host is missing one or more security-related patches.
File: ubuntu_USN-195-1.nasl - Type: ACT_GATHER_INFO
2006-01-15 Name: The remote Ubuntu host is missing one or more security-related patches.
File: ubuntu_USN-196-1.nasl - Type: ACT_GATHER_INFO
2005-11-02 Name: The remote Mandrake Linux host is missing one or more security updates.
File: mandrake_MDKSA-2005-191.nasl - Type: ACT_GATHER_INFO
2005-10-19 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-864.nasl - Type: ACT_GATHER_INFO
2005-10-19 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2005-799.nasl - Type: ACT_GATHER_INFO
2005-10-11 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-200510-05.nasl - Type: ACT_GATHER_INFO
2005-10-11 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-862.nasl - Type: ACT_GATHER_INFO
2005-10-11 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-860.nasl - Type: ACT_GATHER_INFO