Oval Definition:oval:org.opensuse.security:def:20153227
Revision Date:2022-06-30Version:1
Title:CVE-2015-3227
Description:

The (1) jdom.rb and (2) rexml.rb components in Active Support in Ruby on Rails before 4.1.11 and 4.2.x before 4.2.2, when JDOM or REXML is enabled, allow remote attackers to cause a denial of service (SystemStackError) via a large XML document depth.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-3227
Mitre CVE-2015-3227
SUSE CVE-2015-3227
openSUSE-SU-2015:1279-1
openSUSE-SU-2015:1279-1
SUSE-SU-2016:0047-1
SUSE-SU-2016:0047-1
SUSE-SU-2016:0082-1
SUSE-SU-2016:0082-1
Platform(s):openSUSE 13.1
openSUSE 13.2
openSUSE Tumbleweed
SUSE Linux Enterprise Software Development Kit 11 SP3
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE OpenStack Cloud 5
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND Package Information
  • rubygem-activesupport-3_2-3.2.13-3.17.1 is installed
  • OR rubygem-activesupport-3_2-doc-3.2.13-3.17.1 is installed
  • Definition Synopsis
  • openSUSE 13.2 is installed
  • AND Package Information
  • rubygem-activesupport-3_2-3.2.17-2.3.1 is installed
  • OR rubygem-activesupport-3_2-doc-3.2.17-2.3.1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 5 is installed
  • AND Package Information
  • ruby2.1-rubygem-activesupport-4_1-4.1.9-9 is installed
  • OR rubygem-activesupport-4_1-4.1.9-9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND ruby2.1-rubygem-activesupport-4_2-4.2.2-2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
  • OR SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND rubygem-activesupport-3_2-3.2.12-0.14 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • rubygem-actionmailer-4_2 is affected
  • OR rubygem-actionpack-4_2 is affected
  • OR rubygem-actionview-4_2 is affected
  • OR rubygem-activejob-4_2 is affected
  • OR rubygem-activemodel-4_2 is affected
  • OR rubygem-activerecord-4_2 is affected
  • OR rubygem-activesupport-4_2 is affected
  • OR rubygem-rails-4_2 is affected
  • OR rubygem-railties-4_2 is affected
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • ruby2.2-rubygem-activesupport-4_2-4.2.7.1-1.1 is installed
  • OR ruby2.2-rubygem-activesupport-5_0-5.0.0.1-1.1 is installed
  • OR ruby2.2-rubygem-activesupport-doc-4_2-4.2.7.1-1.1 is installed
  • OR ruby2.2-rubygem-activesupport-doc-5_0-5.0.0.1-1.1 is installed
  • OR ruby2.3-rubygem-activesupport-4_2-4.2.7.1-1.1 is installed
  • OR ruby2.3-rubygem-activesupport-5_0-5.0.0.1-1.1 is installed
  • OR ruby2.3-rubygem-activesupport-doc-4_2-4.2.7.1-1.1 is installed
  • OR ruby2.3-rubygem-activesupport-doc-5_0-5.0.0.1-1.1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-actionmailer-4_2 is affected
  • OR ruby2.1-rubygem-actionpack-4_2 is affected
  • OR ruby2.1-rubygem-actionview-4_2 is affected
  • OR ruby2.1-rubygem-activejob-4_2 is affected
  • OR ruby2.1-rubygem-activemodel-4_2 is affected
  • OR ruby2.1-rubygem-activerecord-4_2 is affected
  • OR ruby2.1-rubygem-activesupport-4_2 is affected
  • OR ruby2.1-rubygem-rails-4_2 is affected
  • OR ruby2.1-rubygem-railties-4_2 is affected
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • ruby2.1-rubygem-actionmailer-4_2 is affected
  • OR ruby2.1-rubygem-actionpack-4_2 is affected
  • OR ruby2.1-rubygem-actionview-4_2 is affected
  • OR ruby2.1-rubygem-activejob-4_2 is affected
  • OR ruby2.1-rubygem-activemodel-4_2 is affected
  • OR ruby2.1-rubygem-activerecord-4_2 is affected
  • OR ruby2.1-rubygem-activesupport-4_2 is affected
  • OR ruby2.1-rubygem-rails-4_2 is affected
  • OR ruby2.1-rubygem-railties-4_2 is affected
  • BACK