Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gxj7-mcpg-jpr6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

EPSS

Процентиль: 86%
0.02908
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 11 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

redhat
около 11 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

nvd
почти 11 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.

debian
почти 11 лет назад

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and e ...

oracle-oval
больше 9 лет назад

ELSA-2014-1913: ruby193-ruby security update (MODERATE)

EPSS

Процентиль: 86%
0.02908
Низкий

Дефекты

CWE-119