mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 15:15:46 +02:00
807 B
807 B
CVE-2011-4815
Description
Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
POC
Reference
- http://www.ocert.org/advisories/ocert-2011-003.html
- http://www.ocert.org/advisories/ocert-2011-003.html
Github
No PoCs found on GitHub currently.