Rapid7

vulnerability

FreeBSD: VID-3f6de636-8cdb-11e7-9c71-f0def1fd7ea2: rubygems -- multiple vulnerabilities

Severity
9
CVSS
(AV:N/AC:L/Au:N/C:N/I:C/A:C)
Published
Aug 29, 2017
Added
Aug 29, 2017
Modified
Dec 10, 2025

Description

Official blog of RubyGems reports: The following vulnerabilities have been reported: a DNS request hijacking vulnerability, an ANSI escape sequence vulnerability, a DoS vulnerability in the query command, and a vulnerability in the gem installer that allowed a malicious gem to overwrite arbitrary files.

Solutions

freebsd-upgrade-package-ruby22-gemsfreebsd-upgrade-package-ruby23-gemsfreebsd-upgrade-package-ruby24-gems

References

Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.