Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh4x-ph6p-vmxh

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

An issue was discovered in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.2, and 2.6.x before 2.6.0-preview3. It does not taint strings that result from unpacking tainted strings with some formats.

An issue was discovered in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.2, and 2.6.x before 2.6.0-preview3. It does not taint strings that result from unpacking tainted strings with some formats.

EPSS

Процентиль: 94%
0.07968
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 7 лет назад

An issue was discovered in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.2, and 2.6.x before 2.6.0-preview3. It does not taint strings that result from unpacking tainted strings with some formats.

CVSS3: 5.9
redhat
почти 8 лет назад

An issue was discovered in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.2, and 2.6.x before 2.6.0-preview3. It does not taint strings that result from unpacking tainted strings with some formats.

CVSS3: 8.1
nvd
больше 7 лет назад

An issue was discovered in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.2, and 2.6.x before 2.6.0-preview3. It does not taint strings that result from unpacking tainted strings with some formats.

CVSS3: 8.1
debian
больше 7 лет назад

An issue was discovered in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5. ...

oracle-oval
почти 7 лет назад

ELSA-2019-2028: ruby security update (MODERATE)

EPSS

Процентиль: 94%
0.07968
Низкий

8.1 High

CVSS3