Ruby Other Vulnerability - CVE-2016-2336 - Vulnerability Database

Ruby Other Vulnerability - CVE-2016-2336

Critical
Reference: CVE-2016-2336
Title: Ruby Other Vulnerability
Overview:

Type confusion exists in two methods of Ruby39s WIN32OLE class ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code execution.