CVE-2009-5147 PUBLISHED

DL::dlopen in Ruby 1.8, 1.9.0, 1.9.2, 1.9.3, 2.0.0 before patchlevel 648, and 2.1 before 2.1.8 opens libraries with tainted names.

EPSS 56.22% · 98.1th percentile

Risk Scores

EPSS Score
56.22%
98.1th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSruby1.9.10, 1.9.3.194-8.1ubuntu2, 1.9.3.448-1ubuntu1

Timeline

References

Open in Interactive Console →