Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-0306

Опубликовано: 09 янв. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.4

Описание

A vulnerability was found in Ruby. The Ruby interpreter is vulnerable to the Marvin Attack. This attack allows the attacker to decrypt previously encrypted messages or forge signatures by exchanging a large number of messages with the vulnerable service.

РелизСтатусПримечание
devel

DNE

esm-infra/focal

DNE

esm-infra/xenial

not-affected

see note
focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/bionic

not-affected

see note
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

not-affected

see note
focal

not-affected

see note
jammy

DNE

noble

DNE

oracular

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

DNE

focal

DNE

jammy

not-affected

see note
noble

DNE

oracular

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

not-affected

see note
oracular

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

see note
esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

not-affected

see note
upstream

needs-triage

Показывать по

EPSS

Процентиль: 29%
0.00101
Низкий

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
redhat
12 месяцев назад

A vulnerability was found in Ruby. The Ruby interpreter is vulnerable to the Marvin Attack. This attack allows the attacker to decrypt previously encrypted messages or forge signatures by exchanging a large number of messages with the vulnerable service.

CVSS3: 7.4
nvd
5 месяцев назад

A vulnerability was found in Ruby. The Ruby interpreter is vulnerable to the Marvin Attack. This attack allows the attacker to decrypt previously encrypted messages or forge signatures by exchanging a large number of messages with the vulnerable service.

CVSS3: 7.4
debian
5 месяцев назад

A vulnerability was found in Ruby. The Ruby interpreter is vulnerable ...

CVSS3: 7.4
redos
3 месяца назад

Уязвимость ruby

CVSS3: 7.4
github
5 месяцев назад

A vulnerability was found in Ruby. The Ruby interpreter is vulnerable to the Marvin Attack. This attack allows the attacker to decrypt previously encrypted messages or forge signatures by exchanging a large number of messages with the vulnerable service.

EPSS

Процентиль: 29%
0.00101
Низкий

7.4 High

CVSS3