GHSL-2022-031: _GHSL-2022-032: Type confusion in Nokogiri leads to memory leak or DoS - CVE-2022-29181
Published May 18, 2022
·Updated
Two type confusion issues while processing malicious data can be used to leak the contents of memory or cause a denial-of-service.
Affected Software
1 affected component
rubygems/nokogiri
Event History
May 18, 2022
Advisory Published
via GitHub Security Lab·12:00 AM
Data Sourced
via GitHub Security Lab·12:00 AM
Description
Frequently Asked Questions
1
Which Nokogiri release is referenced for this issue?
The provided references include the Nokogiri v1.13.4 release.
2
When was this issue published?
It was published on 2022-05-18 and was last modified on the same date.