CVE-2017-0901 | RubyGems up to 2.6.12 Specification Name Validator File input validation (RHSA-2017:3485 / EDB-42611)
A vulnerability classified as critical has been found in RubyGems up to 2.6.12. This impacts an unknown function of the component Specification Name Validator. The manipulation leads to improper input validation (File).
This vulnerability is traded as CVE-2017-0901. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.