Количество 9
Количество 9
CVE-2016-0751
actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly restrict use of the MIME type cache, which allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP Accept header.
CVE-2016-0751
actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly restrict use of the MIME type cache, which allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP Accept header.
CVE-2016-0751
actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly restrict use of the MIME type cache, which allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP Accept header.
CVE-2016-0751
actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Rub ...
GHSA-ffpv-c4hm-3x6v
actionpack is vulnerable to denial of service via a crafted HTTP Accept header
BDU:2016-00811
Уязвимость программной платформы Ruby on Rails, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2016:0618-1
Security update for rubygem-actionpack-3_2
openSUSE-SU-2016:0372-1
Security update for rubygem-actionpack-4_2, rubygem-actionview-4_2, rubygem-activemodel-4_2, rubygem-activerecord-4_2, rubygem-activesupport-4_2
SUSE-SU-2016:1146-1
Security update for portus
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2016-0751 actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly restrict use of the MIME type cache, which allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP Accept header. | CVSS3: 7.5 | 6% Низкий | почти 10 лет назад | |
CVE-2016-0751 actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly restrict use of the MIME type cache, which allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP Accept header. | CVSS2: 4.3 | 6% Низкий | около 10 лет назад | |
CVE-2016-0751 actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly restrict use of the MIME type cache, which allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP Accept header. | CVSS3: 7.5 | 6% Низкий | почти 10 лет назад | |
CVE-2016-0751 actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Rub ... | CVSS3: 7.5 | 6% Низкий | почти 10 лет назад | |
GHSA-ffpv-c4hm-3x6v actionpack is vulnerable to denial of service via a crafted HTTP Accept header | CVSS3: 7.5 | 6% Низкий | больше 8 лет назад | |
BDU:2016-00811 Уязвимость программной платформы Ruby on Rails, позволяющая нарушителю вызвать отказ в обслуживании | CVSS2: 5 | 6% Низкий | почти 10 лет назад | |
SUSE-SU-2016:0618-1 Security update for rubygem-actionpack-3_2 | почти 10 лет назад | |||
openSUSE-SU-2016:0372-1 Security update for rubygem-actionpack-4_2, rubygem-actionview-4_2, rubygem-activemodel-4_2, rubygem-activerecord-4_2, rubygem-activesupport-4_2 | около 10 лет назад | |||
SUSE-SU-2016:1146-1 Security update for portus | почти 10 лет назад |
Уязвимостей на страницу