MGASA-2014-0003

Source
https://advisories.mageia.org/MGASA-2014-0003.html
Import Source
https://advisories.mageia.org/MGASA-2014-0003.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0003
Upstream
  • CVE-2013-4164
Published
2014-01-06T01:02:29Z
Modified
2026-04-16T06:22:45Z
Summary
Updated ruby package fixes security vulnerability
Details

Charlie Somerville discovered that Ruby incorrectly handled floating point number conversion. An attacker could possibly use this issue with an application that converts text to floating point numbers to cause the application to crash, resulting in a denial of service, or possibly execute arbitrary code (CVE-2013-4164).

References
Credits

Affected packages

Mageia:3 / ruby

Package

Name
ruby
Purl
pkg:rpm/mageia/ruby?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.9.3.p484-1.mga3

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0003.json"