Описание
The REXML parser in Ruby 1.9.x before 1.9.3-p550, 2.0.x before 2.0.0-p594, and 2.1.x before 2.1.4 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document, aka an XML Entity Expansion (XEE) attack.
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | ignored | end of life |
precise | released | 1.8.7.352-2ubuntu1.5 |
trusty | DNE | |
trusty/esm | DNE | |
upstream | needs-triage | |
utopic | DNE | |
vivid | DNE | |
vivid/stable-phone-overlay | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | ignored | end of life |
maverick | DNE | |
precise | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | needs-triage | |
utopic | DNE | |
vivid | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1.9.3.484-2ubuntu1.1]] |
lucid | ignored | end of life |
precise | released | 1.9.3.0-1ubuntu2.9 |
trusty | released | 1.9.3.484-2ubuntu1.1 |
trusty/esm | DNE | trusty was released [1.9.3.484-2ubuntu1.1] |
upstream | needs-triage | |
utopic | ignored | end of life |
vivid | ignored | end of life |
vivid/stable-phone-overlay | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [2.0.0.484-1ubuntu2.1]] |
lucid | DNE | |
precise | DNE | |
trusty | released | 2.0.0.484-1ubuntu2.1 |
trusty/esm | DNE | trusty was released [2.0.0.484-1ubuntu2.1] |
upstream | needs-triage | |
utopic | released | 2.0.0.484+really457-3ubuntu1.1 |
vivid | DNE | |
vivid/stable-phone-overlay | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | released | 2.1.2-2ubuntu2 |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | needs-triage | |
utopic | released | 2.1.2-2ubuntu1.1 |
vivid | released | 2.1.2-2ubuntu2 |
vivid/stable-phone-overlay | DNE |
Показывать по
EPSS
5 Medium
CVSS2
Связанные уязвимости
The REXML parser in Ruby 1.9.x before 1.9.3-p550, 2.0.x before 2.0.0-p594, and 2.1.x before 2.1.4 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document, aka an XML Entity Expansion (XEE) attack.
The REXML parser in Ruby 1.9.x before 1.9.3-p550, 2.0.x before 2.0.0-p594, and 2.1.x before 2.1.4 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document, aka an XML Entity Expansion (XEE) attack.
The REXML parser in Ruby 1.9.x before 1.9.3-p550, 2.0.x before 2.0.0-p ...
The REXML parser in Ruby 1.9.x before 1.9.3-p550, 2.0.x before 2.0.0-p594, and 2.1.x before 2.1.4 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document, aka an XML Entity Expansion (XEE) attack.
EPSS
5 Medium
CVSS2