Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 47

Количество 47

ubuntu логотип

CVE-2022-28738

около 4 лет назад

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2022-28738

больше 4 лет назад

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 7.7
EPSS: Низкий
nvd логотип

CVE-2022-28738

около 4 лет назад

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2022-28738

около 4 лет назад

A double free was found in the Regexp compiler in Ruby 3.x before 3.0. ...

CVSS3: 9.8
EPSS: Низкий
rocky логотип

RLSA-2023:7025

4 месяца назад

Moderate: ruby:2.5 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2023-7025

больше 2 лет назад

ELSA-2023-7025: ruby:2.5 security update (MODERATE)

EPSS: Низкий
github логотип

GHSA-8pqg-8p79-j5j8

около 4 лет назад

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2022-03068

больше 4 лет назад

Уязвимость реализации класса Regexp интерпретатора языка программирования Ruby, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.2
EPSS: Низкий
redos логотип

ROS-20240918-01

почти 2 года назад

Множественные уязвимости ruby

CVSS3: 9.8
EPSS: Низкий
rocky логотип

RLSA-2022:0543

больше 4 лет назад

Important: ruby:2.6 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2022-0543

больше 4 лет назад

ELSA-2022-0543: ruby:2.6 security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2021-41819

больше 4 лет назад

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2021-41819

больше 4 лет назад

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-41819

больше 4 лет назад

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-41819

больше 4 лет назад

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2021-41819

больше 4 лет назад

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes i ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2021-41817

больше 4 лет назад

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2021-41817

больше 4 лет назад

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-41817

больше 4 лет назад

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-41817

больше 4 лет назад

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1 3.1.2 3.0.2 and 2.0.1.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-28738

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 9.8
3%
Низкий
около 4 лет назад
redhat логотип
CVE-2022-28738

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 7.7
3%
Низкий
больше 4 лет назад
nvd логотип
CVE-2022-28738

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 9.8
3%
Низкий
около 4 лет назад
debian логотип
CVE-2022-28738

A double free was found in the Regexp compiler in Ruby 3.x before 3.0. ...

CVSS3: 9.8
3%
Низкий
около 4 лет назад
rocky логотип
RLSA-2023:7025

Moderate: ruby:2.5 security update

4 месяца назад
oracle-oval логотип
ELSA-2023-7025

ELSA-2023-7025: ruby:2.5 security update (MODERATE)

больше 2 лет назад
github логотип
GHSA-8pqg-8p79-j5j8

A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.

CVSS3: 9.8
3%
Низкий
около 4 лет назад
fstec логотип
BDU:2022-03068

Уязвимость реализации класса Regexp интерпретатора языка программирования Ruby, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.2
3%
Низкий
больше 4 лет назад
redos логотип
ROS-20240918-01

Множественные уязвимости ruby

CVSS3: 9.8
почти 2 года назад
rocky логотип
RLSA-2022:0543

Important: ruby:2.6 security update

больше 4 лет назад
oracle-oval логотип
ELSA-2022-0543

ELSA-2022-0543: ruby:2.6 security update (IMPORTANT)

больше 4 лет назад
ubuntu логотип
CVE-2021-41819

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
redhat логотип
CVE-2021-41819

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-41819

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-41819

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-41819

CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes i ...

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2021-41817

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
redhat логотип
CVE-2021-41817

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-41817

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-41817

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1 3.1.2 3.0.2 and 2.0.1.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад

Уязвимостей на страницу