Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4389

Опубликовано: 17 окт. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ruby on Rails 3.x before 3.2.15 allow remote attackers to cause a denial of service via a crafted e-mail address that is improperly handled during construction of a log message.

РелизСтатусПримечание
devel

not-affected

contains no code
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [contains no code]]
lucid

not-affected

precise

not-affected

contains no code
quantal

not-affected

contains no code
raring

not-affected

contains no code
saucy

not-affected

contains no code
trusty

not-affected

contains no code
trusty/esm

DNE

trusty was not-affected [contains no code]
upstream

released

3.2.15, 4.0.0

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

quantal

DNE

raring

DNE

saucy

DNE

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [3.2.16-1]]
lucid

DNE

precise

DNE

quantal

ignored

end of life
raring

ignored

end of life
saucy

ignored

end of life
trusty

not-affected

3.2.16-1
trusty/esm

DNE

trusty was not-affected [3.2.16-1]
upstream

released

3.2.15

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

DNE

trusty/esm

DNE

upstream

ignored

end of life

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

DNE

trusty/esm

DNE

upstream

ignored

end of life

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

DNE

trusty/esm

DNE

upstream

ignored

end of life

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

DNE

trusty/esm

DNE

upstream

ignored

end of life

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
lucid

DNE

precise

DNE

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

Показывать по

EPSS

Процентиль: 80%
0.01333
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 12 лет назад

Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ruby on Rails 3.x before 3.2.15 allow remote attackers to cause a denial of service via a crafted e-mail address that is improperly handled during construction of a log message.

nvd
больше 12 лет назад

Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ruby on Rails 3.x before 3.2.15 allow remote attackers to cause a denial of service via a crafted e-mail address that is improperly handled during construction of a log message.

debian
больше 12 лет назад

Multiple format string vulnerabilities in log_subscriber.rb files in t ...

github
больше 8 лет назад

actionmailer email address processing causes Denial of service

EPSS

Процентиль: 80%
0.01333
Низкий

4.3 Medium

CVSS2