Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-1812

Опубликовано: 12 дек. 2013
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack.

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.1.7debian-1ubuntu0.1
oneiric

ignored

end of life
precise

released

2.1.8debian-1ubuntu0.1
quantal

DNE

raring

DNE

upstream

released

2.2.2

Показывать по

РелизСтатусПримечание
devel

not-affected

2.1.8debian-6
hardy

DNE

lucid

DNE

oneiric

DNE

precise

DNE

quantal

released

2.1.8debian-5ubuntu0.1
raring

not-affected

2.1.8debian-6
upstream

released

2.1.8debian-6, 2.2.2

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

nvd
около 12 лет назад

The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack.

debian
около 12 лет назад

The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID provide ...

github
больше 8 лет назад

Denial of service in ruby-openid

4.3 Medium

CVSS2