Ruby 1.9.3 before patchlevel 286 and 2.0 before revision r37068 allows context-dependent attackers to bypass safe-level restrictions and modify untainted strings via the (1) exc_to_s or (2) name_err_to_s API function, which marks the string as tainted, a different vulnerability than CVE-2012-4466. NOTE: this issue might exist because of a CVE-2011-1005 regression.
CVSS Details
- CVSS 3.1 Base Score: 9.1
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade ruby | Dec 10, 2025 | Nov 1, 2012 |
| Suse | — | Upgrade ruby-doc-riUpgrade ruby-examplesUpgrade ruby19-doc-riUpgrade ruby-doc-htmlUpgrade ruby-test-suiteUpgrade ruby-debuginfoUpgrade ruby19-devel-extraUpgrade ruby19-tkUpgrade ruby19Upgrade ruby-tkUpgrade ruby-develUpgrade ruby19-develUpgrade ruby-tk-debuginfoUpgrade rubyUpgrade ruby-debugsource | Dec 12, 2013 | Apr 25, 2013 |
| Ubuntu | — | Upgrade libruby1.9.1 | Nov 8, 2024 | Apr 25, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub