Posted by usa on 29 Aug 2017 Ruby ã®æ¨æºæ·»ä»ã©ã¤ãã©ãªã§ãã RubyGems ã«ãè¤æ°ã®èå¼±æ§ãçºè¦ããã¾ããã RubyGems ã®å ¬å¼ããã°ã«ã¦å ±åããã¦ãã¾ãã 詳細 以ä¸ã®èå¼±æ§ãå ±åããã¦ãã¾ãã a DNS request hijacking vulnerability. (CVE-2017-0902) an ANSI escape sequence vulnerability. (CVE-2017-0899) a DoS vulnerability in the query command. (CVE-2017-0900) a vulnerability in the gem installer that allowed a malicious gem to overwrite arbitrary files. (CVE-2017-0901
{{#tags}}- {{label}}
{{/tags}}