CVE-2009-4124

Metadata

CVE-2009-4124
10.0
ruby-lang.org, securityfocus.com, vupen.com, exchange.xforce.ibmcloud.com
2009-12-11
2017-08-17 06:10

Description

Heap-based buffer overflow in the rb_str_justify function in string.c in Ruby 1.9.1 before 1.9.1-p376 allows context-dependent attackers to execute arbitrary code via unspecified vectors involving (1) String#ljust, (2) String#center, or (3) String#rjust. NOTE: some of these details are obtained from third party information.

Related Vulnerabilities

platform vulnerability
CVE-2009-4124 ruby1.9.1
CVE-2009-4124 ruby1.8
CVE-2009-4124