REDHAT-BUG-1935724: Medium severity Ruby on Rails activerecord-session_store vulnerability
The activerecord-sessionstore (aka Active Record Session Store) component through 1.1.3 for Ruby on Rails does not use a constant-time approach when delivering information about whether a guessed session ID is valid. Consequently, remote attackers can leverage timing discrepancies to achieve a correct guess in a relatively short amount of time. This is a related issue to CVE-2019-16782.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1935724?
The severity of REDHAT-BUG-1935724 is classified as high due to potential remote exploitation risks.
How do I fix REDHAT-BUG-1935724?
To fix REDHAT-BUG-1935724, upgrade the activerecord-session_store to version 1.1.4 or later.
What is the impact of REDHAT-BUG-1935724?
The impact of REDHAT-BUG-1935724 allows attackers to exploit timing discrepancies to guess valid session IDs.
Which versions are affected by REDHAT-BUG-1935724?
REDHAT-BUG-1935724 affects all versions of activerecord-session_store up to and including 1.1.3.
Is there a workaround for REDHAT-BUG-1935724?
There is no official workaround for REDHAT-BUG-1935724; upgrading is the recommended action.