Описание
A Regular Expression Denial of Service (ReDoS) issue was discovered in the sanitize_html function of redcloth gem v4.0.0. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support |
| devel | released | 4.3.2-4ubuntu1 |
| esm-apps/bionic | released | 4.3.2-3ubuntu0.1~esm1 |
| esm-apps/focal | released | 4.3.2-3+deb10u1build0.20.04.1 |
| esm-apps/jammy | released | 4.3.2-4ubuntu0.22.04.1 |
| esm-apps/xenial | released | 4.2.9-5ubuntu0.1~esm1 |
| focal | released | 4.3.2-3+deb10u1build0.20.04.1 |
| jammy | released | 4.3.2-4ubuntu0.22.04.1 |
| kinetic | ignored | end of life, was needed |
| lunar | released | 4.3.2-4ubuntu0.23.04.1 |
Показывать по
EPSS
7.5 High
CVSS3
Связанные уязвимости
A Regular Expression Denial of Service (ReDoS) issue was discovered in the sanitize_html function of redcloth gem v4.0.0. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
A Regular Expression Denial of Service (ReDoS) issue was discovered in the sanitize_html function of redcloth gem v4.0.0. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
A Regular Expression Denial of Service (ReDoS) issue was discovered in ...
RedCloth Regular Expression Denial of Service issue
Уязвимость функции sanitize_html программное обеспечения обработки текстовых данных на языке Ruby Redcloth, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
7.5 High
CVSS3