296,746
Total vulnerabilities in the database
In Rubyzip before 1.3.0, a crafted ZIP file can bypass application checks on ZIP entry sizes because data about the uncompressed size can be spoofed. This allows attackers to cause a denial of service (disk consumption).
| Software | From | Fixed in |
|---|---|---|
| rubyzip_project / rubyzip | - | 1.3.0 |
rubyzip
|
- | 1.3.0 |
| fedoraproject / fedora | 29 | 29.x |
| fedoraproject / fedora | 30 | 30.x |
| fedoraproject / fedora | 31 | 31.x |
| redhat / cloudforms | 4.7 | 4.7.x |
| redhat / cloudforms | 5.11 | 5.11.x |