Ruby + OpenSSL && sprintf() == 2009-style Man-in-the-Middle?

If you have web-facing code written in Ruby, and you support SSL (which you do, right?), be sure to patch as soon as you can, to avoid falling victim to what seems very much like a four-year-old flaw…
Naked Security – Sophos