|
|
| |
|
| |
ruby: denial of service
| Package(s): | ruby |
CVE #(s): | CVE-2008-4310
|
| Created: | December 5, 2008 |
Updated: | December 10, 2008 |
| Description: |
ruby has a denial of service vulnerability.
From the Red Hat security advisory:
Vincent Danen reported, that Red Hat Security Advisory RHSA-2008:0897
did not properly address a denial of service flaw in the WEBrick (Ruby
HTTP server toolkit), known as CVE-2008-3656. This flaw allowed a
remote attacker to send a specially-crafted HTTP request to a WEBrick
server that would cause the server to use excessive CPU time. This
update properly addresses this flaw. (CVE-2008-4310) |
| Alerts: |
|
( Log in to post comments)
|
|
|