Lucene search

K
osvGoogleOSV:GHSA-R58R-74GX-6WX3
HistoryMay 14, 2022 - 2:19 a.m.

Nokogiri gem, via libxml, is affected by DoS vulnerabilities

2022-05-1402:19:17
Google
osv.dev
31
nokogiri
dos vulnerabilities
libxml
heap corruption

EPSS

0.021

Percentile

89.3%

Use after free in libxml2 before 2.9.5, as used in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.