Ruby Other Vulnerability - CVE-2016-2336
Reference:
CVE-2016-2336
Title:
Ruby Other Vulnerability
Overview:
Type confusion exists in two methods of Ruby39s WIN32OLE class ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code execution.