Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ruby'pack.c'差异错误漏洞
Vulnerability Description
Ruby是日本软件开发者松本行弘所研发的一种跨平台、面向对象的动态类型编程语言。 Ruby 1.9.3及之前版本和2.x版本至2.1.2版本的pack.c文件中的‘encodes’函数中存在差异错误漏洞。当程序使用特定的格式化字符串说明符时,攻击者可利用该漏洞造成拒绝服务(分段错误)。
CVSS Information
N/A
Vulnerability Type
N/A