Total vulnerabilities in the database
In Rubyzip before 1.3.0, a crafted ZIP file can bypass application checks on ZIP entry sizes because data about the uncompressed size can be spoofed. This allows attackers to cause a denial of service (disk consumption).
Software | From | Fixed in |
---|---|---|
rubyzip_project / rubyzip | - | 1.3.0 |
![]() |
- | 1.3.0 |
fedoraproject / fedora | 29 | 29.x |
fedoraproject / fedora | 30 | 30.x |
fedoraproject / fedora | 31 | 31.x |
redhat / cloudforms | 4.7 | 4.7.x |
redhat / cloudforms | 5.11 | 5.11.x |