VDB
BDU%3A2024-09437
BDU%3A2024-09437
PUBLISHED
CVSS 2.5999999046325684 LOW
Уязвимость функции plain_text_for_blockquote_node расширения Action Text интерпретатора Ruby, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
2.5999999046325684
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», Ruby Team | Red Hat 3scale API Management Platform, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Red Hat Satellite, Action Text |
Timeline
- Nov 14, 2024 CVE Published
References
- https://github.com/rails/rails/commit/4f4312b21a6448336de7c7ab0c4d94b378def468 url
- https://github.com/rails/rails/commit/727b0946c3cab04b825c039435eac963d4e91822 url
- https://github.com/rails/rails/commit/ba286c0a310b7f19cf5cac2a7a4c9def5cf9882e url
- https://github.com/rails/rails/commit/de0df7caebd9cb238a6f10dca462dc5f8d5e98b5 url
- https://redos.red-soft.ru/support/secure/ url
- https://github.com/rails/rails/security/advisories/GHSA-wwhv-wxv9-rpgw advisory
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory
- https://security-tracker.debian.org/tracker/CVE-2024-47888 advisory
- https://access.redhat.com/security/cve/CVE-2024-47888 advisory