Red Hat Security Advisory 2018-0378-01

Discussion in 'News Aggregator' started by Packet Storm, 1 Mar 2018.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2018-0378-01 - Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks. Security Fix: It was discovered that the Net::FTP module did not properly process filenames in combination with certain operations. A remote attacker could exploit this flaw to execute arbitrary commands by setting up a malicious FTP server and tricking a user or Ruby application into downloading files with specially crafted names using the Net::FTP module.

    Continue reading...
     

Share This Page

Loading...