A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to Time objects. The fixed versions are 0.1.1 and 0.2.2.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-03-31T00:00:00

Updated: 2024-01-24T05:06:38.560368

Reserved: 2023-03-23T00:00:00


Link: CVE-2023-28756

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-03-31T04:15:09.090

Modified: 2024-01-24T05:15:13.297


Link: CVE-2023-28756

JSON object: View

cve-icon Redhat Information

No data.

CWE