Логотип exploitDog
bind:"CVE-2009-1904" OR bind:"CVE-2007-1558" OR bind:"CVE-2009-0642"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2009-1904" OR bind:"CVE-2007-1558" OR bind:"CVE-2009-0642"

Количество 19

Количество 19

oracle-oval логотип

ELSA-2009-1140

почти 16 лет назад

ELSA-2009-1140: ruby security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2009-1904

около 16 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2009-1904

около 16 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2009-1904

около 16 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2009-1904

около 16 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-prwc-wj59-8vwr

около 3 лет назад

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

EPSS: Низкий
ubuntu логотип

CVE-2009-0642

больше 16 лет назад

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2009-0642

больше 16 лет назад

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2009-0642

больше 16 лет назад

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2009-0642

больше 16 лет назад

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check th ...

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2007-1558

около 18 лет назад

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

CVSS2: 2.6
EPSS: Низкий
redhat логотип

CVE-2007-1558

около 18 лет назад

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2007-1558

около 18 лет назад

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

CVSS2: 2.6
EPSS: Низкий
debian логотип

CVE-2007-1558

около 18 лет назад

The APOP protocol allows remote attackers to guess the first 3 charact ...

CVSS2: 2.6
EPSS: Низкий
github логотип

GHSA-4gvm-4mw2-9fpv

около 3 лет назад

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

EPSS: Низкий
github логотип

GHSA-jmh6-7c53-fg26

около 3 лет назад

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

EPSS: Низкий
oracle-oval логотип

ELSA-2007-0385

около 18 лет назад

ELSA-2007-0385: Moderate: fetchmail security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2007-0344

почти 18 лет назад

ELSA-2007-0344: Moderate: evolution-data-server security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2007-0386

около 18 лет назад

ELSA-2007-0386: Moderate: mutt security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2009-1140

ELSA-2009-1140: ruby security update (MODERATE)

почти 16 лет назад
ubuntu логотип
CVE-2009-1904

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

CVSS2: 5
5%
Низкий
около 16 лет назад
redhat логотип
CVE-2009-1904

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

CVSS2: 5
5%
Низкий
около 16 лет назад
nvd логотип
CVE-2009-1904

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

CVSS2: 5
5%
Низкий
около 16 лет назад
debian логотип
CVE-2009-1904

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 ...

CVSS2: 5
5%
Низкий
около 16 лет назад
github логотип
GHSA-prwc-wj59-8vwr

The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type.

5%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2009-0642

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

CVSS2: 6.8
1%
Низкий
больше 16 лет назад
redhat логотип
CVE-2009-0642

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

CVSS2: 5
1%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-0642

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

CVSS2: 6.8
1%
Низкий
больше 16 лет назад
debian логотип
CVE-2009-0642

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check th ...

CVSS2: 6.8
1%
Низкий
больше 16 лет назад
ubuntu логотип
CVE-2007-1558

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

CVSS2: 2.6
4%
Низкий
около 18 лет назад
redhat логотип
CVE-2007-1558

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

CVSS2: 2.6
4%
Низкий
около 18 лет назад
nvd логотип
CVE-2007-1558

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

CVSS2: 2.6
4%
Низкий
около 18 лет назад
debian логотип
CVE-2007-1558

The APOP protocol allows remote attackers to guess the first 3 charact ...

CVSS2: 2.6
4%
Низкий
около 18 лет назад
github логотип
GHSA-4gvm-4mw2-9fpv

ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.

1%
Низкий
около 3 лет назад
github логотип
GHSA-jmh6-7c53-fg26

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.

4%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2007-0385

ELSA-2007-0385: Moderate: fetchmail security update (MODERATE)

около 18 лет назад
oracle-oval логотип
ELSA-2007-0344

ELSA-2007-0344: Moderate: evolution-data-server security update (MODERATE)

почти 18 лет назад
oracle-oval логотип
ELSA-2007-0386

ELSA-2007-0386: Moderate: mutt security update (MODERATE)

около 18 лет назад

Уязвимостей на страницу