[FREEBSD:A8674C14-83D7-11DB-88D5-0012F06707F0] ruby -- cgi.rb library Denial of Service
Severity
Medium
Affected Packages
2
CVEs
1
The official ruby site reports:
Another vulnerability has been discovered in the CGI library
(cgi.rb) that ships with Ruby which could be used by a malicious
user to create a denial of service attack (DoS).
A specific HTTP request for any web application using cgi.rb
causes CPU consumption on the machine on which the web application
is running. Many such requests result in a denial of service.
Package | Affected Version |
---|---|
pkg:freebsd/ruby_static | |
pkg:freebsd/ruby | < 1.8.5_5,1 |
- ID
- FREEBSD:A8674C14-83D7-11DB-88D5-0012F06707F0
- Severity
- medium
- Severity from
- CVE-2006-6303
- URL
- http://vuxml.freebsd.org/freebsd/a8674c14-83d7-11db-88d5-0012f06707f0.html
- Published
-
2006-12-04T00:00:00
(18 years ago) - Modified
-
2006-12-04T00:00:00
(18 years ago) - Rights
- FreeBSD VuXML Security Team
- Other Advisories
Source | # ID | Name | URL |
---|---|---|---|
FreeBSD VuXML | http://www.ruby-lang.org/en/news/2006/12/04/another-dos-vulnerability-in-cgi-library/ |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:freebsd/ruby_static | ruby_static | |||||
Affected | pkg:freebsd/ruby | ruby | < 1.8.5_5,1 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |