Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-6181

The parse_char_class function in regparse.c in the Onigmo (aka Oniguruma-mod) regular expression library, as used in Ruby 2.4.0, allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted regular expression.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.3%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2017-6181
  • Ruby-Lang » Ruby » Version: 2.4.0
    cpe:2.3:a:ruby-lang:ruby:2.4.0


Contact Us

Shodan ® - All rights reserved