Lucene search

K
osvGoogleOSV:CVE-2021-41817
HistoryJan 01, 2022 - 5:15 a.m.

CVE-2021-41817

2022-01-0105:15:08
Google
osv.dev
15
cve-2021-41817
redos
ruby
date gem
software vulnerability

EPSS

0.005

Percentile

77.4%

Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.