[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2012:024 -- Mandriva ruby

ID: oval:org.secpod.oval:def:302799Date: (C)2012-12-11   (M)2023-11-16
Class: PATCHFamily: unix




A vulnerability has been found and corrected in ruby: Ruby before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service via crafted input to an application that maintains a hash table. The updated packages have been patched to correct this issue.

Platform:
Mandriva Linux 2011.0
Mandriva Linux 2010.1
Product:
ruby
Reference:
MDVSA-2012:024
CVE-2011-4815
CVE    1
CVE-2011-4815
CPE    2
cpe:/o:mandriva:linux:2010.1
cpe:/o:mandriva:linux:2011.0

© SecPod Technologies