CVE-2014-3916 PUBLISHED CVSS 5 MEDIUM

The str_buf_cat function in string.c in Ruby 1.9.3, 2.0.0, and 2.1 allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string.

EPSS 0.49% · 65.4th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
0.49%
65.4th percentile

Affected Products

VendorProductVersions
n/an/an/a
rubyonrailsrails1.9.3, 2.0.0, 2.1.0

Timeline

References

Open in Interactive Console →