GHSA-62qp-3fxm-9wxf
Dashboard / Vulnerabilities / GHSA-62qp-3fxm-9wxf
Summary: Nokogiri vulnerable to DoS while parsing XML documents
Details: Nokogiri gem has Denial of Service via infinite loop when parsing XML documents
References: https://nvd.nist.gov/vuln/detail/CVE-2013-6460, https://access.redhat.com/security/cve/cve-2013-6460, https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-6460, https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-6460, https://exchange.xforce.ibmcloud.com/vulnerabilities/90058, https://github.com/rubysec/ruby-advisory-db/blob/master/gems/nokogiri/CVE-2013-6460.yml, https://github.com/sparklemotion/nokogiri, https://security-tracker.debian.org/tracker/CVE-2013-6460, https://web.archive.org/web/20200229074427/https://www.securityfocus.com/bid/64513, http://www.openwall.com/lists/oss-security/2013/12/27/2
Affected packages
Package
Name: nokogiri
Purl: pkg:gem/nokogiri
Affected ranges
Type: ECOSYSTEM
Events:
