VDB
BDU%3A2024-09435
BDU%3A2024-09435
PUBLISHED
CVSS 2.5999999046325684 LOW
Уязвимость функции block_format расширения Action Text интерпретатора Ruby, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
2.5999999046325684
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», Ruby Team | Red Hat 3scale API Management Platform, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Red Hat Satellite, Action Text |
Timeline
- Nov 14, 2024 CVE Published
References
- https://github.com/rails/rails/commit/0e5694f4d32544532d2301a9b4084eacb6986e94 url
- https://github.com/rails/rails/commit/3612e3eb3fbafed4f85e1c6ea4c7b6addbb0fdd3 url
- https://github.com/rails/rails/commit/985f1923fa62806ff676e41de67c3b4552131ab9 url
- https://github.com/rails/rails/commit/be898cc996986decfe238341d96b2a6573b8fd2e url
- https://github.com/rails/rails/security/advisories/GHSA-h47h-mwp9-c6q6 url
- https://redos.red-soft.ru/support/secure/ url
- https://access.redhat.com/security/cve/CVE-2024-47889 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory
- https://security-tracker.debian.org/tracker/CVE-2024-47889 advisory