Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The decode method in the OpenSSL::ASN1 module in Ruby before 2.2.8, 2.3.x before 2.3.5, and 2.4.x through 2.4.1 allows attackers to cause a denial of service (interpreter crash) via a crafted string.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ruby OpenSSL::ASN1模块安全漏洞
Vulnerability Description
Ruby是日本软件开发者松本行弘所研发的一种跨平台、面向对象的动态类型编程语言。OpenSSL::ASN1 module是其中的一个ASN1数据解码模块。 Ruby 2.2.8之前的版本、2.3.5之前的2.3.x版本和2.4.x版本至2.4.1版本中的OpenSSL::ASN1模块的解密方法存在安全漏洞。攻击者可借助特制的字符串利用该漏洞造成拒绝服务(解释器崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A