Summary
Ubuntu Update for Linux kernel vulnerabilities USN-1603-2
Solution
Please Install the Updated Packages.
Insight
USN-1603-1 fixed vulnerabilities in Ruby. This update provides the corresponding updates for Ubuntu 12.10.
Original advisory details:
Shugo Maedo and Vit Ondruch discovered that Ruby incorrectly allowed untainted strings to be modified in protective safe levels. An attacker could use this flaw to bypass intended access restrictions. (CVE-2012-4466, CVE-2012-4481)
Affected
ruby1.8 on Ubuntu 12.10
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2012-4466, CVE-2012-4481 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:P/A:N
Related Vulnerabilities