Oval Definition:oval:org.opensuse.security:def:20140082
Revision Date:2021-08-15Version:1
Title:CVE-2014-0082
Description:

actionpack/lib/action_view/template/text.rb in Action View in Ruby on Rails 3.x before 3.2.17 converts MIME type strings to symbols during use of the :text option to the render method, which allows remote attackers to cause a denial of service (memory consumption) by including these strings in headers.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-0082
Mitre CVE-2014-0082
SUSE CVE-2014-0082
openSUSE-SU-2014:0295-1
openSUSE-SU-2014:0295-1
SUSE-SU-2014:0734-1
SUSE-SU-2014:0734-1
SUSE-SU-2014:0756-1
SUSE-SU-2014:0756-1
Platform(s):openSUSE 12.3 Update
openSUSE 13.1
SUSE Cloud 2.0
SUSE Cloud 3
SUSE Lifecycle Management Server 1.3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Software Development Kit 11 SP3
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Studio Onsite 1.3
WebYaST 1.3
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND Package Information
  • rubygem-actionpack-3_2-3.2.13-2.15.1 is installed
  • OR rubygem-actionpack-3_2-doc-3.2.13-2.15.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND rubygem-actionpack-3_2-3.2.12-0.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND rubygem-actionpack-3_2-3.2.12-0.19.1 is installed
  • BACK