CVE-2015-1828
06.10.2017, 22:29
The Ruby http gem before 0.7.3 does not verify hostnames in SSL connections, which might allow remote attackers to obtain sensitive information via a man-in-the-middle-attack.Enginsight
Vendor | Product | Version |
---|---|---|
http.rb_project | http.rb | 𝑥 ≤ 0.7.2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References