Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35072
HistoryApr 13, 2022 - 7:35 a.m.

Denial Of Service (DoS)

2022-04-1307:35:07
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
20
denial of service
vulnerability
ruby
regexp compilation
application crash
malicious input
software

EPSS

0.005

Percentile

75.6%

ruby is vulnerable to denial of service. The vulnerability exists due to a Double free in Regexp compilation which allows an attacker to crash the application via malicious input.