CVE-2026-54696

EUVD-2026-40626
Ruby JSON is a JSON implementation for Ruby. Versions 2.9.0 through 2.19.8 are vulnerable to heap buffer overflow when the JSON generator is provided with an oversized streamed object. When streaming to an IO JSON.dump(obj, io) and JSON::State#generate(obj, io) can write past the internal JSON generator buffer when a streamed object contains an
attacker-controlled string near 16 KB. Exploitation would result in a reliable process crash/denial of service. This issue has been fixed in version 2.19.9.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.7 LOW
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 22.61%
Debian logo
Debian Releases
Debian Product
Codename
ruby-json
bookworm
2.6.3+dfsg-1
fixed
bullseye
2.3.0+dfsg-1
fixed
forky
2.21.1+dfsg-1
fixed
sid
2.21.1+dfsg-1
fixed
trixie
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ruby2.3
jammy
dne
noble
dne
questing
dne
resolute
dne
xenial
needs-triage
ruby2.5
bionic
needs-triage
jammy
dne
noble
dne
questing
dne
resolute
dne
ruby2.7
focal
needs-triage
jammy
dne
noble
dne
questing
dne
resolute
dne
ruby3.0
jammy
needs-triage
noble
dne
questing
dne
resolute
dne
ruby3.2
jammy
dne
noble
needs-triage
questing
dne
resolute
dne
ruby3.3
jammy
dne
noble
dne
questing
ignored
resolute
needs-triage
jruby
bionic
needs-triage
focal
needs-triage
jammy
dne
noble
needs-triage
questing
ignored
resolute
needs-triage
trusty
needs-triage
ruby-json
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
questing
ignored
resolute
needs-triage
trusty
needs-triage