
Proof-of-concept exploit demonstrating Ruby OpenSSL CA private key spoofing vulnerability (CVE-2014-2734) via public key manipulation before private key assignment.
Ruby OpenSSL CA Private Key Spoofing
=============
Ruby openssl has a vulnerability when a public key is a issued prior writing to private key and is reopened during a script it spoofs a CA private key.
SecurityFocus: http://www.securityfocus.com/bid/66956