Описание
ELSA-2012-0069: ruby security update (MODERATE)
[1.8.7.352-4]
- Address CVE-2011-4815 'DoS (excessive CPU use) via hash meet-in-the-middle
attacks (oCERT-2011-003)'
- ruby-1.8.7-p352-CVE-2011-4815.patch
- Resolves: rhbz#768831
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
ruby
1.8.7.352-4.el6_2
ruby-devel
1.8.7.352-4.el6_2
ruby-docs
1.8.7.352-4.el6_2
ruby-irb
1.8.7.352-4.el6_2
ruby-libs
1.8.7.352-4.el6_2
ruby-rdoc
1.8.7.352-4.el6_2
ruby-ri
1.8.7.352-4.el6_2
ruby-static
1.8.7.352-4.el6_2
ruby-tcltk
1.8.7.352-4.el6_2
Oracle Linux i686
ruby
1.8.7.352-4.el6_2
ruby-devel
1.8.7.352-4.el6_2
ruby-docs
1.8.7.352-4.el6_2
ruby-irb
1.8.7.352-4.el6_2
ruby-libs
1.8.7.352-4.el6_2
ruby-rdoc
1.8.7.352-4.el6_2
ruby-ri
1.8.7.352-4.el6_2
ruby-static
1.8.7.352-4.el6_2
ruby-tcltk
1.8.7.352-4.el6_2
Связанные CVE
Связанные уязвимости
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restri ...
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.