Description
The decode method in the OpenSSL::ASN1 module in Ruby before 2.2.8, 2.3.x
before 2.3.5, and 2.4.x through 2.4.1 allows attackers to cause a denial of
service (interpreter crash) via a crafted string.
Package
Upstream: | needs-triage
|
Ubuntu 12.04 ESM (Precise Pangolin): | DNE
|
Ubuntu 14.04 ESM (Trusty Tahr): | DNE
(trusty was released [1.9.3.484-2ubuntu1.5])
|
Ubuntu 16.04 LTS (Xenial Xerus): | DNE
|
Ubuntu 18.04 LTS (Bionic Beaver): | DNE
|
Package
Upstream: | needs-triage
|
Ubuntu 12.04 ESM (Precise Pangolin): | DNE
|
Ubuntu 14.04 ESM (Trusty Tahr): | DNE
|
Ubuntu 16.04 LTS (Xenial Xerus): | DNE
|
Ubuntu 18.04 LTS (Bionic Beaver): | DNE
|
Updated: 2019-12-05 18:48:10 UTC (commit dd38ff22974aae499eb50644b9d5a2817483cbdb)