CVE-2023-28120
EUVD-2023-106909.01.2025, 01:15
There is a vulnerability in ActiveSupport if the new bytesplice method is called on a SafeBuffer with untrusted user input.
Awaiting analysis
This vulnerability is currently awaiting analysis.
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| rails |
| ||||||||||||||||||||
| rails-4.0 |
| ||||||||||||||||||||
| ruby-actionpack-3.2 |
| ||||||||||||||||||||
| ruby-activemodel-3.2 |
| ||||||||||||||||||||
| ruby-activerecord-3.2 |
| ||||||||||||||||||||
| ruby-activesupport-3.2 |
| ||||||||||||||||||||
| ruby-rails-3.2 |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| rmt-server |
| ||||||||||||||||||||||
| rmt-server-config |
| ||||||||||||||||||||||
| rmt-server-pubcloud |
|
References