Get the latest tech news

Ruby Array Pack Bleed


With the release of Ruby 4.0.0 on Christmas, I decided to revisit integer handling bugs within Ruby MRI, the canonical implementation of the Ruby programming language. This lead me to discover a vulnerability which allows reading memory out of bounds of the allocated string buffer.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of vulnerability

vulnerability

Photo of ruby

ruby

Related news:

News photo

Pixoo Sign Client for Ruby

News photo

Matz 2/2: The trajectory of Ruby's growth, Open-Source Software today etc.

News photo

A Vulnerability in Libsodium