CVE-2011-4815
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predi
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
HIGH · CVSS 7.8
EPSS 0.00946
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules3
YARA rules0