Project

General

Profile

Actions

Bug #3978

closed

Ruby heap overflow in floating point parsing (CVE-2013-4164)

Added by Lukas Zapletal over 10 years ago. Updated over 10 years ago.

Status:
Rejected
Priority:
Urgent
Assignee:
-
Category:
Security
Target version:
-
Difficulty:
easy
Triaged:
Fixed in Releases:
Found in Releases:

Description

This CVE is not covered in our RHEL6 repo for Foreman 1.3. It is categorized as critical.

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4164

https://access.redhat.com/security/cve/CVE-2013-4164

Actions #1

Updated by Lukas Zapletal over 10 years ago

  • Status changed from New to Rejected

Created the issue just for the record, we are heading towards Foreman 1.4 where we should deliver on RH SCL (fixed there).

Actions

Also available in: Atom PDF