RubyGems version 2.6.12 and earlier is vulnerable to maliciously crafted gem specifications to cause a denial of service attack against RubyGems clients who have issued a `query` command.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: hackerone

Published: 2017-08-31T20:00:00

Updated: 2024-08-05T13:25:16.790Z

Reserved: 2016-11-30T00:00:00

Link: CVE-2017-0900

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-08-31T20:29:00.510

Modified: 2019-05-13T14:31:40.837

Link: CVE-2017-0900

cve-icon Redhat

Severity : Low

Publid Date: 2017-09-01T00:00:00Z

Links: CVE-2017-0900 - Bugzilla