Описание
Ruby JSON is a JSON implementation for Ruby. Versions 2.9.0 through 2.19.8 are vulnerable to heap buffer overflow when the JSON generator is provided with an oversized streamed object. When streaming to an IO JSON.dump(obj, io) and JSON::State#generate(obj, io) can write past the internal JSON generator buffer when a streamed object contains an
attacker-controlled string near 16 KB. Exploitation would result in a reliable process crash/denial of service. This issue has been fixed in version 2.19.9.
A flaw was found in Ruby JSON. A remote attacker could exploit a heap buffer overflow vulnerability by providing an oversized streamed object containing a specially crafted string. This could lead to a reliable process crash, resulting in a denial of service (DoS) for the affected system.
Отчет
This Low impact flaw in Ruby JSON can lead to a denial of service in applications that process untrusted, oversized streamed JSON objects. The vulnerability arises from a heap buffer overflow when the JSON generator attempts to write past its internal buffer with an attacker-controlled string near 16 KB, resulting in a process crash.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat 3scale API Management Platform 2 | 3scale-amp2/backend-rhel8 | Fix deferred | ||
| Red Hat 3scale API Management Platform 2 | 3scale-amp2/system-rhel7 | Out of support scope | ||
| Red Hat 3scale API Management Platform 2 | 3scale-amp2/zync-rhel8 | Out of support scope | ||
| Red Hat AMQ Clients | json | Fix deferred | ||
| Red Hat Enterprise Linux 10 | ruby | Fix deferred | ||
| Red Hat Enterprise Linux 10 | ruby4.0 | Fix deferred | ||
| Red Hat Enterprise Linux 10 | ubi10/ruby-33 | Fix deferred | ||
| Red Hat Enterprise Linux 10 | ubi10/ruby-40 | Fix deferred | ||
| Red Hat Enterprise Linux 8 | pcs | Fix deferred | ||
| Red Hat Enterprise Linux 8 | ruby:3.3/ruby | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
3.7 Low
CVSS3
Связанные уязвимости
Ruby JSON is a JSON implementation for Ruby. Versions 2.9.0 through 2.19.8 are vulnerable to heap buffer overflow when the JSON generator is provided with an oversized streamed object. When streaming to an IO JSON.dump(obj, io) and JSON::State#generate(obj, io) can write past the internal JSON generator buffer when a streamed object contains an attacker-controlled string near 16 KB. Exploitation would result in a reliable process crash/denial of service. This issue has been fixed in version 2.19.9.
Ruby JSON is a JSON implementation for Ruby. Versions 2.9.0 through 2.19.8 are vulnerable to heap buffer overflow when the JSON generator is provided with an oversized streamed object. When streaming to an IO JSON.dump(obj, io) and JSON::State#generate(obj, io) can write past the internal JSON generator buffer when a streamed object contains an attacker-controlled string near 16 KB. Exploitation would result in a reliable process crash/denial of service. This issue has been fixed in version 2.19.9.
Ruby JSON is a JSON implementation for Ruby. Versions 2.9.0 through 2. ...
Ruby json: JSON generator heap buffer overflow when streaming to an IO
EPSS
3.7 Low
CVSS3