← All CVEs

CVE-2006-1931

medium · 5

The HTTP/XMLRPC server in Ruby before 1.8.2 uses blocking sockets, which allows attackers to cause a denial of service (blocked connections) via a large amount of data.

5
CVSS
10.2%
EPSS (exploit prob.)
95th
EPSS percentile
2006-04-20
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
yukihiro_matsumotoruby1.6
yukihiro_matsumotoruby1.6.1
yukihiro_matsumotoruby1.6.2
yukihiro_matsumotoruby1.6.3
yukihiro_matsumotoruby1.6.4
yukihiro_matsumotoruby1.6.5
yukihiro_matsumotoruby1.6.6
yukihiro_matsumotoruby1.6.7
yukihiro_matsumotoruby1.8
yukihiro_matsumotoruby1.8.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-1931