CVE-2011-0188
23.03.2011, 02:00
The VpMemAlloc function in bigdecimal.c in the BigDecimal class in Ruby 1.9.2-p136 and earlier, as used on Apple Mac OS X before 10.6.7 and other platforms, does not properly allocate memory, which allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving creation of a large BigDecimal value within a 64-bit process, related to an "integer truncation issue."Enginsight
Vendor | Product | Version |
---|---|---|
ruby-lang | ruby | 𝑥 ≤ 1.9.2-p136 |
ruby-lang | ruby | 1.9 |
ruby-lang | ruby | 1.9:r18423 |
ruby-lang | ruby | 1.9.0 |
ruby-lang | ruby | 1.9.0:r18423 |
ruby-lang | ruby | 1.9.0-0 |
ruby-lang | ruby | 1.9.0-1 |
ruby-lang | ruby | 1.9.0-2 |
ruby-lang | ruby | 1.9.0-20060415 |
ruby-lang | ruby | 1.9.0-20070709 |
ruby-lang | ruby | 1.9.1 |
ruby-lang | ruby | 1.9.1:-p0 |
ruby-lang | ruby | 1.9.1:-p129 |
ruby-lang | ruby | 1.9.1:-p243 |
ruby-lang | ruby | 1.9.1:-p376 |
ruby-lang | ruby | 1.9.1:-p429 |
ruby-lang | ruby | 1.9.1:-preview_1 |
ruby-lang | ruby | 1.9.1:-preview_2 |
ruby-lang | ruby | 1.9.1:-rc1 |
ruby-lang | ruby | 1.9.1:-rc2 |
ruby-lang | ruby | 1.9.2 |
ruby-lang | ruby | 1.9.2:dev |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
ruby1.8 |
| ||||||||||||||||||||||
ruby1.9 |
| ||||||||||||||||||||||
ruby1.9.1 |
|
Common Weakness Enumeration
References