Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-16229

Опубликовано: 26 фев. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.5

Описание

In the Ox gem 2.8.1 for Ruby, the process crashes with a stack-based buffer over-read in the read_from_str function in sax_buf.c when a crafted input is supplied to sax_parse.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

2.8.2-1build2
cosmic

not-affected

2.8.2-1build2
devel

not-affected

2.8.2-1build2
disco

not-affected

2.8.2-1build2
eoan

not-affected

2.8.2-1build2
esm-apps/bionic

not-affected

2.8.2-1build2
esm-apps/focal

not-affected

2.8.2-1build2
esm-apps/jammy

not-affected

2.8.2-1build2
esm-apps/noble

not-affected

2.8.2-1build2

Показывать по

EPSS

Процентиль: 38%
0.00165
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
nvd
почти 8 лет назад

In the Ox gem 2.8.1 for Ruby, the process crashes with a stack-based buffer over-read in the read_from_str function in sax_buf.c when a crafted input is supplied to sax_parse.

CVSS3: 5.5
debian
почти 8 лет назад

In the Ox gem 2.8.1 for Ruby, the process crashes with a stack-based b ...

CVSS3: 5.5
github
почти 8 лет назад

Ox gem stack overflow in sax_parse

EPSS

Процентиль: 38%
0.00165
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3