Format string vulnerability in the mdiag_initialize function in gtk/src/rbgtkmessagedialog.c in Ruby-GNOME 2 (aka Ruby/Gnome2) 0.16.0, and SVN versions before 20071127, allows context-dependent attackers to execute arbitrary code via format string specifiers in the message parameter.
{
"severity": "MODERATE",
"github_reviewed_at": "2020-06-16T22:03:18Z",
"cwe_ids": [
"CWE-134"
],
"nvd_published_at": "2007-11-30T00:46:00Z",
"github_reviewed": true
}