Title : rPath Security Update Fixes Ruby Security Bypass Vulnerabilities VUPEN ID : VUPEN/ADV-2008-2477 CVE ID : CVE-2008-3655 - CVE-2008-3656 - CVE-2008-3657
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-09-03
Technical Description
Multiple vulnerabilities have been identified in rPath Linux, which could be exploited by attackers or malicious users to bypass security restrictions, cause a denial of service or gain elevated privileges. These issues are caused by errors in Ruby. For additional information, see : VUPEN/ADV-2008-2334