DL::dlopen in Ruby 1.8, 1.9.0, 1.9.2, 1.9.3, 2.0.0 before patchlevel 648, and 2.1 before 2.1.8 opens libraries with tainted names.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-03-29T14:00:00
Updated: 2024-08-07T07:32:23.332Z
Reserved: 2015-07-28T00:00:00
Link: CVE-2009-5147
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-03-29T14:59:00.187
Modified: 2018-03-28T01:29:01.247
Link: CVE-2009-5147
Redhat