Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3656 (Ruby)

BugsAlert Home > CVE-2008-3656 (Ruby)
 
 

Algorithmic complexity vulnerability in WEBrick::HTTP::DefaultFileHandler in WEBrick in Ruby 1.8.5 and earlier, 1.8.5 through 1.8.6-p286, 1.8.7 through 1.8.7-p71, and 1.9 through r18423 allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted HTTP request that is processed by a backtracking regular expression.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3656

Learn more about CVE-2008-3656 (Ruby)
 
Tags: cve-2008-3656 ruby

Related Items

      SunShop Shopping Cart class.ajax.php SQL Injection Vulnerabilities

      BitTorrent Peer Client Denial of Service Vulnerability

      CVE-2008-4798 (webgui)

      Maian Search v1.1 Multiple Vulnerabilities (XSS/SQL INJECTION)

      FrSIRT - IBM Rational Build Forge Remote Denial of Service Vulnerability

      FrSIRT - Saba "usercp.php" Data Handling Cross Site Scripting Vulnerabilities

      CVE-2008-2168 (Apache HTTP Server)

 

Pixel