CVE-2008-4310
httputils.rb in WEBrick in Ruby 1.8.1 and 1.8.5, as used in Red Hat Enterprise Linux 4 and 5, allows remote attackers to cause a denial of service (CPU consumption) via a crafted HTTP request. NOTE: this issue exists because of an incomplete fix for CVE-2008-3656.
- Ruby-lang Ruby
- = 1.8.1, 1.8.5
- CVSS 2.0
- 7.8 HIGH
- EPSS
- 13.6% (96th percentile)
- Weakness
- CWE-399
- NVD status
- Modified
- Published
- 2008-12-09
CVE-2008-4310 at NVD
1 known exploit for CVE-2008-4310
Proof-of-concept code and exploit modules indexed by Sploitus