Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-1904

Опубликовано: 11 июн. 2009
Источник: debian
EPSS Низкий

Описание

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ruby1.8fixed1.8.7.173-1package
ruby1.9removedpackage

Примечания

  • http://www.ruby-lang.org/en/news/2009/06/09/dos-vulnerability-in-bigdecimal/

EPSS

Процентиль: 89%
0.0471
Низкий

Связанные уязвимости

ubuntu
около 16 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

redhat
около 16 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

nvd
около 16 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

github
около 3 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

oracle-oval
почти 16 лет назад

ELSA-2009-1140: ruby security update (MODERATE)

EPSS

Процентиль: 89%
0.0471
Низкий