Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-1812

Опубликовано: 12 дек. 2013
Источник: debian
EPSS Низкий

Описание

The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ruby-openidfixed2.1.8debian-6package
libopenid-rubyremovedpackage
libopenid-rubyfixed2.1.8debian-1+squeeze1squeezepackage

EPSS

Процентиль: 67%
0.00531
Низкий

Связанные уязвимости

ubuntu
около 12 лет назад

The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack.

nvd
около 12 лет назад

The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack.

github
больше 8 лет назад

Denial of service in ruby-openid

EPSS

Процентиль: 67%
0.00531
Низкий