Sploitus

CVE-2011-4838

1 known exploit for CVE-2011-4838

JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.

Affected products
Jruby
Jruby
< 1.6.5.1
CVSS 2.0
5.0 MEDIUM
EPSS
4.4% (90th percentile)
Weakness
CWE-400
NVD status
Modified
Published
2011-12-30
CVE-2011-4838 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2011-4838

Proof-of-concept code and exploit modules indexed by Sploitus