CVE-2024-27282 | Ruby up to 3.0.6/3.1.4/3.2.3/3.3.0 Regex Search heap-based overflow (Nessus ID 215915 / WID-SEC-2024-0952)
A vulnerability, which was classified as critical, has been found in Ruby up to 3.0.6/3.1.4/3.2.3/3.3.0. Affected is an unknown function of the component Regex Search. Performing a manipulation results in heap-based buffer overflow.
This vulnerability was named CVE-2024-27282. The attack needs to be approached within the local network. There is no available exploit.
It is advisable to upgrade the affected component.