CVE-2016-2336
06.01.2017, 21:59
Type confusion exists in two methods of Ruby's WIN32OLE class, ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code execution.Enginsight
Vendor | Product | Version |
---|---|---|
ruby-lang | ruby | 2.2.2 |
ruby-lang | ruby | 2.3.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases