Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-4815

Опубликовано: 30 дек. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.8

Описание

Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.

РелизСтатусПримечание
devel

released

1.8.7.352-2ubuntu1
hardy

ignored

end of life
lucid

released

1.8.7.249-2ubuntu0.1
maverick

released

1.8.7.299-2ubuntu0.1
natty

released

1.8.7.302-2ubuntu0.1
oneiric

released

1.8.7.352-2ubuntu0.1
upstream

released

1.8.7.357

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

not-affected

lucid

not-affected

maverick

DNE

natty

DNE

oneiric

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

not-affected

maverick

not-affected

natty

not-affected

oneiric

not-affected

upstream

not-affected

Показывать по

EPSS

Процентиль: 82%
0.01876
Низкий

7.8 High

CVSS2

Связанные уязвимости

redhat
больше 13 лет назад

Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.

nvd
больше 13 лет назад

Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.

debian
больше 13 лет назад

Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restri ...

github
больше 3 лет назад

Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.

oracle-oval
больше 13 лет назад

ELSA-2012-0069: ruby security update (MODERATE)

EPSS

Процентиль: 82%
0.01876
Низкий

7.8 High

CVSS2