LWN.net Logo

ruby: denial of service

Package(s):ruby CVE #(s):
Created:May 1, 2009 Updated:May 6, 2009
Description: From the ruby advisory: There is a DoS vulnerability in the REXML library included in the Ruby Standard Library. A so-called "XML entity explosion" attack technique can be used for remotely bringing down (disabling) any application which parses user-provided XML using REXML.
Alerts:
Slackware SSA:2009-120-01 2009-05-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds