Количество 30
Количество 30
RLSA-2026:33577
Important: ruby:4.0 security update
RLSA-2026:33576
Important: ruby:3.3 security update
RLSA-2026:33565
Important: ruby security update
RLSA-2026:33540
Important: ruby4.0 security update
RLSA-2026:33515
Important: ruby:3.3 security update
ELSA-2026-33577
ELSA-2026-33577: ruby:4.0 security update (IMPORTANT)
ELSA-2026-33576
ELSA-2026-33576: ruby:3.3 security update (IMPORTANT)
ELSA-2026-33565
ELSA-2026-33565: ruby security update (IMPORTANT)
ELSA-2026-33540
ELSA-2026-33540: ruby4.0 security update (IMPORTANT)
ELSA-2026-33515
ELSA-2026-33515: ruby:3.3 security update (IMPORTANT)
RLSA-2026:33514
Important: ruby:2.5 security update
ELSA-2026-33514
ELSA-2026-33514: ruby:2.5 security update (IMPORTANT)
CVE-2026-42245
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, Net::IMAP::ResponseReader has quadratic time complexity when reading large responses containing many string literals. A hostile server can send responses which are crafted to exhaust the client's CPU for a denial of service attack. This issue has been patched in versions 0.4.24, 0.5.14, and 0.6.4.
CVE-2026-42245
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, Net::IMAP::ResponseReader has quadratic time complexity when reading large responses containing many string literals. A hostile server can send responses which are crafted to exhaust the client's CPU for a denial of service attack. This issue has been patched in versions 0.4.24, 0.5.14, and 0.6.4.
CVE-2026-42245
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, Net::IMAP::ResponseReader has quadratic time complexity when reading large responses containing many string literals. A hostile server can send responses which are crafted to exhaust the client's CPU for a denial of service attack. This issue has been patched in versions 0.4.24, 0.5.14, and 0.6.4.
CVE-2026-42245
Net::IMAP implements Internet Message Access Protocol (IMAP) client fu ...
GHSA-q2mw-fvj9-vvcw
net-imap has quadratic complexity when reading response literals
CVE-2026-42246
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully", without starting TLS. This issue has been patched in versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4.
CVE-2026-42246
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully", without starting TLS. This issue has been patched in versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4.
CVE-2026-42246
Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully", without starting TLS. This issue has been patched in versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:33577 Important: ruby:4.0 security update | около 1 месяца назад | |||
RLSA-2026:33576 Important: ruby:3.3 security update | около 1 месяца назад | |||
RLSA-2026:33565 Important: ruby security update | 27 дней назад | |||
RLSA-2026:33540 Important: ruby4.0 security update | 27 дней назад | |||
RLSA-2026:33515 Important: ruby:3.3 security update | около 1 месяца назад | |||
ELSA-2026-33577 ELSA-2026-33577: ruby:4.0 security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-33576 ELSA-2026-33576: ruby:3.3 security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-33565 ELSA-2026-33565: ruby security update (IMPORTANT) | 16 дней назад | |||
ELSA-2026-33540 ELSA-2026-33540: ruby4.0 security update (IMPORTANT) | 16 дней назад | |||
ELSA-2026-33515 ELSA-2026-33515: ruby:3.3 security update (IMPORTANT) | около 1 месяца назад | |||
RLSA-2026:33514 Important: ruby:2.5 security update | около 1 месяца назад | |||
ELSA-2026-33514 ELSA-2026-33514: ruby:2.5 security update (IMPORTANT) | около 1 месяца назад | |||
CVE-2026-42245 Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, Net::IMAP::ResponseReader has quadratic time complexity when reading large responses containing many string literals. A hostile server can send responses which are crafted to exhaust the client's CPU for a denial of service attack. This issue has been patched in versions 0.4.24, 0.5.14, and 0.6.4. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-42245 Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, Net::IMAP::ResponseReader has quadratic time complexity when reading large responses containing many string literals. A hostile server can send responses which are crafted to exhaust the client's CPU for a denial of service attack. This issue has been patched in versions 0.4.24, 0.5.14, and 0.6.4. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-42245 Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, Net::IMAP::ResponseReader has quadratic time complexity when reading large responses containing many string literals. A hostile server can send responses which are crafted to exhaust the client's CPU for a denial of service attack. This issue has been patched in versions 0.4.24, 0.5.14, and 0.6.4. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-42245 Net::IMAP implements Internet Message Access Protocol (IMAP) client fu ... | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
GHSA-q2mw-fvj9-vvcw net-imap has quadratic complexity when reading response literals | 0% Низкий | 3 месяца назад | ||
CVE-2026-42246 Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully", without starting TLS. This issue has been patched in versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4. | CVSS3: 7.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-42246 Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully", without starting TLS. This issue has been patched in versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4. | CVSS3: 7.4 | 0% Низкий | 3 месяца назад | |
CVE-2026-42246 Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully", without starting TLS. This issue has been patched in versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4. | CVSS3: 7.4 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу