Sha256: 64fb4aca2fd030fdd08c4d21f714558fb113ed8ae8d2739a59c342196ecae806

Contents?: true

Size: 576 Bytes

Versions: 1

Compression:

Stored size: 576 Bytes

Contents

---
gem: nokogiri
cve: 2013-6461
osvdb: 101458
url: https://nvd.nist.gov/vuln/detail/CVE-2013-6461
title: Nokogiri Gem for Ruby External Entity (XXE) Expansion Remote DoS 
date: 2013-12-14
description: Nokogiri gem for Ruby contains an flaw that is triggered during the parsing of XML data.
  The issue is due to an incorrectly configured XML parser accepting XML external entities from
  an untrusted source. By sending specially crafted XML data, a remote attacker can cause an infinite
  loop and crash the program.
cvss_v2:
patched_versions: 
  - ~> 1.5.11
  - ">= 1.6.1"

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.7.0.1 data/ruby-advisory-db/gems/nokogiri/CVE-2013-6461.yml