enum_column3 Gem for Ruby Symbol Creation Remote DoS
Published: June 26, 2013
SECURITY IDENTIFIERS
- OSVDB: OSVDB-94679
- Vendor Advisory: https://security.snyk.io/vuln/SNYK-RUBY-ENUMCOLUMN3-20100
GEM
PATCHED VERSIONS
None available.
DESCRIPTION
The enum_column3 Gem for Ruby contains a flaw that may allow a remote denial of service. The issue is due to the program typecasting unexpected strings to symbols. This may allow a remote attacker to crash the program.
