Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ruby输入验证漏洞
Vulnerability Description
Ruby是一种功能强大的面向对象的脚本语言。 Ruby处理在哈希表单张贴和更新哈希表单时,哈希生成的函数中存在漏洞。攻击者可利用此漏洞通过在HTTP POST请求中发送特制的表单,造成哈希冲突,导致较高的CPU消耗。
CVSS Information
N/A
Vulnerability Type
N/A