From a9c5547b50ee7e5370d458b7a562b6f815e9f03d Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Sat, 13 May 2023 05:02:46 +0000 Subject: [PATCH] Publish GHSA-882p-jqgm-f45g --- .../2018/04/GHSA-882p-jqgm-f45g/GHSA-882p-jqgm-f45g.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/advisories/github-reviewed/2018/04/GHSA-882p-jqgm-f45g/GHSA-882p-jqgm-f45g.json b/advisories/github-reviewed/2018/04/GHSA-882p-jqgm-f45g/GHSA-882p-jqgm-f45g.json index 2f8311fce5b..ddec34b2037 100644 --- a/advisories/github-reviewed/2018/04/GHSA-882p-jqgm-f45g/GHSA-882p-jqgm-f45g.json +++ b/advisories/github-reviewed/2018/04/GHSA-882p-jqgm-f45g/GHSA-882p-jqgm-f45g.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-882p-jqgm-f45g", - "modified": "2021-09-07T14:55:47Z", + "modified": "2023-05-04T19:56:39Z", "published": "2018-04-13T16:17:46Z", "aliases": [ "CVE-2017-18258" ], - "summary": "Moderate severity vulnerability that affects nokogiri", + "summary": "Uncontrolled resource consumption in nokogiri", "details": "The xz_head function in xzlib.c in libxml2 before 2.9.6 allows remote attackers to cause a denial of service (memory consumption) via a crafted LZMA file, because the decoder functionality does not restrict memory usage to what is required for a legitimate file.", "severity": [ {