အဓိကအကြောင်းအရာသို့ သွားမည်
x

Open source programming language ဖြစ်သော Ruby တွင် ဖြစ်နေသော heap-based buffer overflow vulnerability

Open source programming language ဖြစ်သော Ruby တွင် ဖြစ်နေသော heap-based buffer overflow vulnerability နှင့်ပတ်သက်၍ ၂ဝ၁၃ ခုနှစ် ဒီဇင််ဘာလ ၂၇ရက် နေ့က SecurityFocus တွင် ထုတ်ပြန်အသိပေးခဲ့ကြောင်း သိရှိရပါသည်။ ၄င်း vulnerability ကြောင့် attacker သည် application ၏ context တွင် affected function များကို သုံး၍ arbitrary code များကို execute လုပ်နိုင်ပါသည်။ Failed exploit သည်လည်း application ကို crash ဖြစ်စေမှာဖြစ်ပါသည်။ အောက်ပါ version များတွင် အားနည်းချက်ရှိနေကြောင်း ဖော်ပြထားပါသည်။
Ruby 1.8 
Ruby 1.9 prior to 1.9.3-p484
 Ruby 2.0 prior to 2.0.0-p353 
Ruby 2.1 prior to 2.1.0 preview2
အသေးစိတ်ကို အောက်ပါ link တွင် ကြည့်ရှုနိုင်ပါသည်။

http://www.securityfocus.com/bid/63873/discuss