Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-4975

Опубликовано: 15 нояб. 2014
Источник: debian
EPSS Низкий

Описание

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ruby1.8not-affectedpackage
ruby1.9.1removedpackage
ruby1.9.1no-dsawheezypackage
ruby2.0removedpackage
ruby2.1fixed2.1.3-1package

Примечания

  • http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=46778

EPSS

Процентиль: 85%
0.02493
Низкий

Связанные уязвимости

ubuntu
почти 11 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

redhat
около 11 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

nvd
почти 11 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

github
больше 3 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

oracle-oval
больше 9 лет назад

ELSA-2014-1913: ruby193-ruby security update (MODERATE)

EPSS

Процентиль: 85%
0.02493
Низкий