VDB
BDU%3A2024-01887
BDU%3A2024-01887
PUBLISHED
CVSS 7.800000190734863 HIGH
Уязвимость анализатора html-кода NekoHTML программной библиотеки Nokogiri, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle Corp., Сообщество свободного программного обеспечения, Novell Inc., Red Hat Inc., Elastic NV | WebLogic Server, Debian GNU/Linux, openSUSE Tumbleweed, CloudForms Management Engine, SUSE Linux Enterprise Module for Development Tools, Suse Linux Enterprise Server, OpenSUSE Leap, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Server for SAP Applications, SUSE Manager Proxy, SUSE Manager Server, Suse Linux Enterprise Desktop, SUSE Enterprise Storage, SUSE Manager Retail Branch Server, Red Hat Satellite, SUSE Linux Enterprise Real Time, SUSE Linux Enterprise Server Business Critical Linux, SUSE Manager Server Module, NekoHTML, Logstash |
Timeline
- Mar 12, 2024 CVE Published
References
- https://www.elastic.co/downloads/past-releases/logstash-7-17-18 url
- https://access.redhat.com/security/cve/cve-2022-24839 url
- https://www.suse.com/security/cve/CVE-2022-24839.html url
- https://github.com/sparklemotion/nekohtml/commit/a800fce3b079def130ed42a408ff1d09f89e773d url
- https://www.oracle.com/security-alerts/cpujul2022.html url
- https://security-tracker.debian.org/tracker/CVE-2022-24839 advisory
- https://github.com/sparklemotion/nekohtml/security/advisories/GHSA-9849-p7jc-9rmv advisory