Miggo Logo

CVE-2015-5312: Nokogiri subject to DoS via libxml2 vulnerability

7.1

CVSS Score

Basic Information

EPSS Score
0.87123%
Published
8/21/2018
Updated
8/25/2023
KEV Status
No
Technology
TechnologyRuby

Technical Details

CVSS Vector
AV:N/AC:M/Au:N/C:N/I:N/A:C
Package NameEcosystemVulnerable VersionsFirst Patched Version
nokogirirubygems>= 1.6.0, <= 1.6.7.01.6.7.1

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

T** xmlStrin*L*n***o***ntiti*s *un*tion in p*rs*r.* in li*xml* ***or* *.*.* (*s us** in noko*iri ***or* *.*.*.*) *o*s not prop*rly pr*v*nt *ntity *xp*nsion, w*i** *llows *ont*xt-**p*n**nt *tt**k*rs to **us* * **ni*l o* s*rvi** (*PU *onsumption) vi* *

Reasoning

No *n*lysis *v*il**l*