Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2017-6181
HistoryApr 03, 2017 - 5:59 a.m.

CVE-2017-6181

2017-04-0305:59:00
Debian Security Bug Tracker
security-tracker.debian.org
9

0.004 Low

EPSS

Percentile

73.3%

The parse_char_class function in regparse.c in the Onigmo (aka Oniguruma-mod) regular expression library, as used in Ruby 2.4.0, allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted regular expression.

OSVersionArchitecturePackageVersionFilename
Debian9allruby2.3< 2.3.3-1+deb9u8ruby2.3_2.3.3-1+deb9u8_all.deb

0.004 Low

EPSS

Percentile

73.3%