Multiple Ruby security vulnerabilities
weblog.rubyonrails.com
weblog.rubyonrails.com
http://www.matasano.com/log/1070/updates-on-drew-yaos-terrib...
The details of these vulnerabilities are not under wraps; they were fixed in commits labelled with their CVE numbers.
a[0x7fffffff] = 55
(irb):14: [BUG] Segmentation fault
Presumably this is one of the attack vectors that was fixed.
(irb):3:in `[]=': failed to allocate memory (NoMemoryError) from (irb):3:in `irb_binding' from /usr/lib/ruby/1.8/irb/workspace.rb:52:in `irb_binding' from /usr/lib/ruby/1.8/irb/workspace.rb:52