LWN.net Logo

rubygems: denial of service

Package(s):rubygems CVE #(s):CVE-2013-4287
Created:September 23, 2013 Updated:September 25, 2013
Description: From the Fedora advisory:

A vulnerability was found on rubygems currently being shipped on Fedora in validating versions with a regular expression which leads to denial of service due to backtracking.

Alerts:
Fedora FEDORA-2013-16316 2013-09-20
Fedora FEDORA-2013-16376 2013-09-20

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds