[#79532] Immutable Strings vs Symbols — Daniel Ferreira <subtileos@...>

Hi,

15 messages 2017/02/15

[ruby-core:79678] [Ruby trunk Bug#13234] Infinite recursion (stack overflow) in parse_char_class()

From: fumfi.255@...
Date: 2017-02-22 09:49:20 UTC
List: ruby-core #79678
Issue #13234 has been updated by Kamil Frankowicz.


This is CVE-2017-6181.

----------------------------------------
Bug #13234: Infinite recursion (stack overflow) in parse_char_class()
https://bugs.ruby-lang.org/issues/13234#change-63098

* Author: Kamil Frankowicz
* Status: Closed
* Priority: Normal
* Assignee: 
* Target version: 
* ruby -v: 
* Backport: 2.2: DONTNEED, 2.3: DONTNEED, 2.4: REQUIRED
----------------------------------------
After some fuzz testing I found a crashing test case.

Git HEAD: fbd5cda6aad6db01bbca3d893a9970314a1bd52c

To reproduce: miniruby ruby_so_parse_char_class

Error log: bug-13234.log


---Files--------------------------------
ruby_so_parse_char_class (4 KB)
bug-13234.log (82.3 KB)


-- 
https://bugs.ruby-lang.org/

Unsubscribe: <mailto:ruby-core-request@ruby-lang.org?subject=unsubscribe>
<http://lists.ruby-lang.org/cgi-bin/mailman/options/ruby-core>

In This Thread

Prev Next