There is a possible denial of service vulnerability in Action View (Rails) <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 where specially crafted accept headers can cause action view to consume 100% cpu and make the server unresponsive.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-1739-1 | rails security update |
![]() |
EUVD-2019-0386 | There is a possible denial of service vulnerability in Action View (Rails) <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 where specially crafted accept headers can cause action view to consume 100% cpu and make the server unresponsive. |
![]() |
GHSA-m63j-wh5w-c252 | Denial of Service Vulnerability in Action View |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-04T19:54:53.468Z
Reserved: 2019-01-04T00:00:00
Link: CVE-2019-5419

No data.

Status : Modified
Published: 2019-03-27T14:29:01.657
Modified: 2024-11-21T04:44:54.017
Link: CVE-2019-5419


No data.