CVE-2009-4123 Information

Description

The jruby-openssl gem before 0.6 for JRuby mishandles SSL certificate validation.

Reference

https://github.com/advisories/GHSA-xgv7-pqqh-h2w9 https://github.com/rubysec/ruby-advisory-db/blob/master/gems/jruby-openssl/CVE-2009-4123.yml http://jruby.org/2009/12/07/vulnerability-in-jruby-openssl https://web.archive.org/web/20101213091125/http://jruby.org/2009/12/07/vulnerability-in-jruby-openssl

Share on: