|
|
| |
|
| |
ruby: escape sequence injection
| Package(s): | ruby |
CVE #(s): | CVE-2009-4492
|
| Created: | January 14, 2010 |
Updated: | August 15, 2011 |
| Description: |
From the Fedora alert:
A security vulnerability is found on WEBrick module in Ruby currently shipped on
Fedora 11 that WEBrick lets attackers to inject malicious escape sequences to
its logs, making it possible for dangerous control characters to be executed on
a victim's terminal emulator. |
| Alerts: |
|
( Log in to post comments)
|
|
|