PT-2023-18701 · Ruby On Rails+4 · Action Dispatch+4

Wonda_Tea_Coffee

·

Publicado

2023-01-18

·

Atualizado

2025-09-29

·

CVE-2023-22795

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Action Dispatch versions prior to 6.1.7.1 Action Dispatch versions prior to 7.0.4.1
Description The issue is related to insufficient input validation in the Action Dispatch component of Ruby on Rails, which can lead to a denial of service (DoS) vulnerability. A specially crafted HTTP If-None-Match header can cause the regular expression engine to enter a state of catastrophic backtracking when using a version of Ruby below 3.2.0, leading to high CPU and memory usage. This can result in a possible DoS vulnerability. Users running affected releases should upgrade or use one of the workarounds immediately.
Recommendations For Action Dispatch versions prior to 6.1.7.1, upgrade to version 6.1.7.1 or apply the patch 6-1-Avoid-regex-backtracking-on-If-None-Match-header.patch. For Action Dispatch versions prior to 7.0.4.1, upgrade to version 7.0.4.1 or apply the patch 7-0-Avoid-regex-backtracking-on-If-None-Match-header.patch. As a temporary workaround, consider using a load balancer or other device to filter out malicious If-None-Match headers before they reach the application.

Exploit

Correção

DoS

RCE

Resource Exhaustion

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2025_16880
ALT-PU-2023-1336
ALT-PU-2023-4268
ALT-PU-2024-7814
AZL-13562
BDU:2025-01401
CVE-2023-22795
DSA-5372-1
GHSA-8XWW-X3G3-6JCV
OESA-2024-1146
OPENSUSE-SU-2023_0444-1
OPENSUSE-SU-2024:12765-1
OPENSUSE-SU-2024:14067-1
OPENSUSE-SU-2025:15110-1
RHSA-2023:6818
RLSA-2023:6818
SUSE-SU-2023:0442-1
SUSE-SU-2023:0444-1

Produtos afetados

Alt Linux
Action Dispatch
Red Os
Rocky Linux
Suse