Количество 13
Количество 13
ELSA-2013-0612
ELSA-2013-0612: ruby security update (MODERATE)

CVE-2013-1821
lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack.

CVE-2013-1821
lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack.

CVE-2013-1821
lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack.
CVE-2013-1821
lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows ...

CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.

CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.

CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.
CVE-2012-4481
The safe-level feature in Ruby 1.8.7 allows context-dependent attacker ...
GHSA-hgg7-cghq-xhf4
Ruby vulnerable to denial of service
GHSA-gh65-6rxj-m8cc
The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005.
ELSA-2013-0611
ELSA-2013-0611: ruby security update (MODERATE)
ELSA-2013-0129
ELSA-2013-0129: ruby security and bug fix update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
ELSA-2013-0612 ELSA-2013-0612: ruby security update (MODERATE) | больше 12 лет назад | |||
![]() | CVE-2013-1821 lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack. | CVSS2: 5 | 8% Низкий | больше 12 лет назад |
![]() | CVE-2013-1821 lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack. | CVSS2: 4.3 | 8% Низкий | больше 12 лет назад |
![]() | CVE-2013-1821 lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an XML Entity Expansion (XEE) attack. | CVSS2: 5 | 8% Низкий | больше 12 лет назад |
CVE-2013-1821 lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows ... | CVSS2: 5 | 8% Низкий | больше 12 лет назад | |
![]() | CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | CVSS2: 4.3 | 1% Низкий | больше 12 лет назад |
![]() | CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | CVSS2: 4.3 | 1% Низкий | почти 13 лет назад |
![]() | CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | CVSS2: 4.3 | 1% Низкий | больше 12 лет назад |
CVE-2012-4481 The safe-level feature in Ruby 1.8.7 allows context-dependent attacker ... | CVSS2: 4.3 | 1% Низкий | больше 12 лет назад | |
GHSA-hgg7-cghq-xhf4 Ruby vulnerable to denial of service | 8% Низкий | больше 3 лет назад | ||
GHSA-gh65-6rxj-m8cc The safe-level feature in Ruby 1.8.7 allows context-dependent attackers to modify strings via the NameError#to_s method when operating on Ruby objects. NOTE: this issue is due to an incomplete fix for CVE-2011-1005. | 1% Низкий | больше 3 лет назад | ||
ELSA-2013-0611 ELSA-2013-0611: ruby security update (MODERATE) | больше 12 лет назад | |||
ELSA-2013-0129 ELSA-2013-0129: ruby security and bug fix update (MODERATE) | больше 12 лет назад |
Уязвимостей на страницу