CVE-2009-5147
29.03.2017, 14:59
DL::dlopen in Ruby 1.8, 1.9.0, 1.9.2, 1.9.3, 2.0.0 before patchlevel 648, and 2.1 before 2.1.8 opens libraries with tainted names.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ruby-lang | ruby | 1.8.0 |
| ruby-lang | ruby | 1.9.0 |
| ruby-lang | ruby | 1.9.2 |
| ruby-lang | ruby | 1.9.3 |
| ruby-lang | ruby | 2.0.0 |
| ruby-lang | ruby | 2.0.0:p195 |
| ruby-lang | ruby | 2.0.0:p247 |
| ruby-lang | ruby | 2.0.0:p353 |
| ruby-lang | ruby | 2.0.0:p481 |
| ruby-lang | ruby | 2.0.0:p576 |
| ruby-lang | ruby | 2.0.0:p594 |
| ruby-lang | ruby | 2.0.0:p598 |
| ruby-lang | ruby | 2.0.0:p643 |
| ruby-lang | ruby | 2.0.0:p645 |
| ruby-lang | ruby | 2.0.0:p647 |
| ruby-lang | ruby | 2.1.0 |
| ruby-lang | ruby | 2.1.1 |
| ruby-lang | ruby | 2.1.2 |
| ruby-lang | ruby | 2.1.3 |
| ruby-lang | ruby | 2.1.4 |
| ruby-lang | ruby | 2.1.5 |
| ruby-lang | ruby | 2.1.6 |
| ruby-lang | ruby | 2.1.7 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ruby1.8 |
| ||||||||||||||
| ruby1.9.1 |
| ||||||||||||||
| ruby2.0 |
| ||||||||||||||
| ruby2.1 |
| ||||||||||||||
| ruby2.2 |
| ||||||||||||||
| ruby2.3 |
|
Common Weakness Enumeration
References