Related Vulnerabilities: CVE-2022-28739  

out-of-bounds read in string-to-float conversion

Severity High

Remote Unknown

Type Information disclosure

Description

out-of-bounds read in string-to-float conversion

AVG-2757 ruby 3.0.3-1 3.0.4-1 High Fixed

https://www.ruby-lang.org/en/news/2022/04/12/buffer-overrun-in-string-to-float-cve-2022-28739/
https://hackerone.com/reports/1248108