Lucene search

K
redhatcveRedhat.comRH:CVE-2017-0903
HistoryOct 10, 2017 - 6:19 p.m.

CVE-2017-0903

2017-10-1018:19:03
redhat.com
access.redhat.com
10

0.135 Low

EPSS

Percentile

95.7%

A vulnerability was found where the rubygems module was vulnerable to an unsafe YAML deserialization when inspecting a gem. Applications inspecting gem files without installing them can be tricked to execute arbitrary code in the context of the ruby interpreter.