RubyGems gemcutter contains a flaw in the Psych YAML parser. The issue is due to the program failing to properly deserialize objects. With a specially crafted object, a remote attacker can execute arbitrary code.
Disclosure Timeline:
Disclosure Date :2013-01-30
Exploit Publish Date :2013-01-30