LWN.net Logo

ruby: certificate spoofing

Package(s):ruby CVE #(s):CVE-2009-0642
Created:July 20, 2009 Updated:December 8, 2009
Description: The ruby library does not properly validate X.509 certificates, enabling an attacker to use expired or invalid certificates.
Alerts:
Mandriva MDVSA-2009:325 2009-12-07
Debian DSA-1860-1 2009-08-12
Mandriva MDVSA-2009:193 2009-08-05
Ubuntu USN-805-1 2009-07-20

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds