Bug#398457: CVE-2006-5467: Ruby cgi.rb Denial of Service Vulnerability

2006-12-06 Thread Steve Langasek
severity 398457 important thanks The normal severity for security bugs of a DoS nature is important rather than grave, because a DoS doesn't compromise a user's account or information. If the maintainer believes this bug renders the package unreleasable, or the exploit is so trivial and

Bug#398457: CVE-2006-5467: Ruby cgi.rb Denial of Service Vulnerability

2006-11-13 Thread Stefan Fritsch
Package: libruby1.8 Version: 1.8.5-3 Severity: grave Tags: security Justification: user security hole A vulnerability has been found in ruby's cgi.rb (or rather a previous fix was incomplete). From CVE-2006-5467: The cgi.rb CGI library for Ruby 1.8 allows remote attackers to cause a dneial of