Ruby-lang Time 0.2.1 for Ruby

CPE Details

Ruby-lang Time 0.2.1 for Ruby
0.2.1
2023-04-07
11h21 +00:00
2023-04-07
12h24 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ruby-lang:time:0.2.1:*:*:*:*:ruby:*:*

Informations

Vendor

ruby-lang

Product

time

Version

0.2.1

Target Software

ruby

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-28756 2023-03-30 22h00 +00:00 A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to Time objects. The fixed versions are 0.1.1 and 0.2.2.
5.3
Medium