raven-ruby 'okjson_spec.rb' Denial of Service Vulnerability
BID:71864
Info
raven-ruby 'okjson_spec.rb' Denial of Service Vulnerability
| Bugtraq ID: | 71864 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-9490 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 09 2014 12:00AM |
| Updated: | Dec 09 2014 12:00AM |
| Credit: | Travis CI |
| Vulnerable: |
GetSentry raven-ruby 0.12.1 GetSentry raven-ruby 0.6 |
| Not Vulnerable: |
GetSentry raven-ruby 0.12.2 GetSentry raven-ruby 0.6.1 |
Discussion
raven-ruby 'okjson_spec.rb' Denial of Service Vulnerability
raven-ruby is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
raven-ruby is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
Exploit / POC
raven-ruby 'okjson_spec.rb' Denial of Service Vulnerability
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution / Fix
raven-ruby 'okjson_spec.rb' Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
raven-ruby 'okjson_spec.rb' Denial of Service Vulnerability
References:
References:
- raven-ruby Git Page (github)
- Remove scientific computation from okjson (github)
- Security Release - raven-ruby 0.12.2 (google)