Amazon Linux AMI : ruby19 (ALAS-2013-229)
Medium Nessus Plugin ID 70233
SynopsisThe remote Amazon Linux AMI host is missing a security update.
Description(1) DL and (2) Fiddle in Ruby 1.9 before 1.9.3 patchlevel 426, and 2.0 before 2.0.0 patchlevel 195, do not perform taint checking for native functions, which allows context-dependent attackers to bypass intended $SAFE level restrictions.
SolutionRun 'yum update ruby19' to update your system.