CVE-2010-2489

Buffer overflow in Ruby 1.9.x before 1.9.1-p429 on Windows might allow local users to gain privileges via a crafted ARGF.inplace_mode value that is not properly handled when constructing the filenames of the backup files.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:C/A:C
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 22%
VendorProductVersion
ruby-langruby
1.9.0-0
ruby-langruby
1.9.0-1
ruby-langruby
1.9.0-2
ruby-langruby
1.9.0-20060415
ruby-langruby
1.9.0-20070709
ruby-langruby
1.9.1:-p0
ruby-langruby
1.9.1:-p129
ruby-langruby
1.9.1:-p243
ruby-langruby
1.9.1:-p376
ruby-langruby
1.9.1:-p429
ruby-langruby
1.9.1:-preview_1
ruby-langruby
1.9.1:-preview_2
ruby-langruby
1.9.1:-rc1
ruby-langruby
1.9.1:-rc2
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ruby1.8
lucid
not-affected
karmic
not-affected
jaunty
not-affected
hardy
not-affected
dapper
not-affected
ruby1.9.1
lucid
not-affected
karmic
not-affected
jaunty
dne
hardy
dne
dapper
dne