Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-1821

Опубликовано: 09 апр. 2013
Источник: ubuntu
Приоритет: medium
CVSS2: 5

Описание

lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack.

РелизСтатусПримечание
devel

not-affected

1.8.7.358-7ubuntu1
hardy

ignored

end of life
lucid

released

1.8.7.249-2ubuntu0.3
oneiric

released

1.8.7.352-2ubuntu0.3
precise

released

1.8.7.352-2ubuntu1.2
quantal

released

1.8.7.358-4ubuntu0.2
raring

not-affected

1.8.7.358-7ubuntu1
saucy

not-affected

1.8.7.358-7ubuntu1
upstream

released

1.8.7.358-7

Показывать по

РелизСтатусПримечание
devel

released

1.9.3.194-8.1ubuntu1
hardy

DNE

lucid

ignored

end of life
oneiric

ignored

end of life
precise

released

1.9.3.0-1ubuntu2.6
quantal

released

1.9.3.194-1ubuntu1.4
raring

released

1.9.3.194-8.1ubuntu1
saucy

released

1.9.3.194-8.1ubuntu1
upstream

released

1.9.3 patchlevel 392,1.9.3.194-8.1

Показывать по

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 12 лет назад

lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack.

nvd
больше 12 лет назад

lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack.

debian
больше 12 лет назад

lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows ...

github
больше 3 лет назад

Ruby vulnerable to denial of service

oracle-oval
больше 12 лет назад

ELSA-2013-0611: ruby security update (MODERATE)

5 Medium

CVSS2