Record summary

CVE-2017-0900 has a selected CVSS score of 7.5 (high).

Description

RubyGems version 2.6.12 and earlier is vulnerable to maliciously crafted gem specifications to cause a denial of service attack against RubyGems clients who have issued a `query` command.

Description source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
GitHub AdvisoryBefore 2.6.13 · Fixed in 2.6.13affected

References

Showing 12 of 16