Multiple vulnerabilities in RubyGems

The following vulnerabilities have been reported.a DNS request hijacking vulnerability. (CVE-2017-0902)an ANSI escape sequence vulnerability. (CVE-2017-0899)a DoS vulnerability in the query command. (CVE-2017-0900)a vulnerability in the gem installer that allowed a malicious gem to overwrite arbitrary files. (CVE-2017-0901)It is strongly recommended for Ruby users to take one of the following workarounds as soon as possible.
Multiple vulnerabilities in RubyGems #ruby #rubydeveloper #rubyonrails #vulnerabilities https://rubyonrails.ba/single/multiple-vulnerabilities-in-rubygems

Nezir Zahirovic

Contractor Ruby On Rails (8+ years) / MCPD .Net / C# / Asp.Net / CSS / SQL / (11 years)

related articles