Project

General

Profile

Actions

Bug #2860

closed

CVE-2013-4180 - Potential DoS in HostsController

Added by Marek Hulán over 10 years ago. Updated over 10 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
Security
Target version:
Difficulty:
Triaged:
Fixed in Releases:
Found in Releases:

Description

HostController#power and HostController#ipmi_boot convert user input to symbol which could lead to memory exhaustion. Patch already sent, so setting Ready For Testing status.


Files

Actions #1

Updated by Dominic Cleal over 10 years ago

Patch ACKed by me, pending merge with 1.2.1 release.

Actions #2

Updated by Marek Hulán over 10 years ago

  • Subject changed from Potential DoS in HostsController to CVE-2013-4180 - Potential DoS in HostsController
Actions #3

Updated by Dominic Cleal over 10 years ago

  • Target version changed from 1.2.1 to 1.2.2
Actions #5

Updated by Dominic Cleal over 10 years ago

  • Private changed from Yes to No
Actions #6

Updated by Marek Hulán over 10 years ago

  • Status changed from Pending to Closed
  • % Done changed from 0 to 100
Actions

Also available in: Atom PDF