Lucene search

K
osvGoogleOSV:GHSA-RG5M-3FQP-6PX8
HistoryOct 24, 2017 - 6:33 p.m.

actionmailer email address processing causes Denial of service

2017-10-2418:33:37
Google
osv.dev
19

0.011 Low

EPSS

Percentile

84.1%

Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ruby on Rails 3.x before 3.2.15 allow remote attackers to cause a denial of service via a crafted e-mail address that is improperly handled during construction of a log message.