← Vulnerability feed

Vulnerability record · CVE-2006-5467 · published 27 October 2006

CVE-2006-5467: Yukihiro matsumoto ruby vulnerability

YYukihiro Matsumoto · Ruby

The cgi.rb CGI library for Ruby 1.8 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an HTTP request with a multipart MIME body that contains an invalid boundary specifier, as demonstrated using a specifier that begins with a "-" instead of "--" and contains an inconsistent ID.

5.0 CVSS 2.0 Medium EPSS 4.5% · top 8.8% CWE-399 · CWE-399
5.0CVSS 2.0 base score
4.5%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
52References
16 Jun 2026Last modified by NVD

Description

The cgi.rb CGI library for Ruby 1.8 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an HTTP request with a multipart MIME body that contains an invalid boundary specifier, as demonstrated using a specifier that begins with a "-" instead of "--" and contains an inconsistent ID.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
ftp://patches.sgi.com/support/free/security/advisories/20061101-01-P PatchVendor Advisory
http://docs.info.apple.com/article.html?artnum=305530
http://lists.apple.com/archives/security-announce/2007/May/msg00004.html
http://rubyforge.org/pipermail/mongrel-users/2006-October/001946.html
http://secunia.com/advisories/22615 PatchVendor Advisory
http://secunia.com/advisories/22624 PatchVendor Advisory
http://secunia.com/advisories/22761 PatchVendor Advisory
http://secunia.com/advisories/22929 PatchVendor Advisory
http://secunia.com/advisories/22932 Vendor Advisory
http://secunia.com/advisories/23040 PatchVendor Advisory
http://secunia.com/advisories/23344 PatchVendor Advisory
http://secunia.com/advisories/25402 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200611-12.xml PatchVendor Advisory
http://securitytracker.com/id?1017194 Patch
http://www.debian.org/security/2006/dsa-1234
http://www.debian.org/security/2006/dsa-1235
http://www.mandriva.com/security/advisories?name=MDKSA-2006:192
http://www.novell.com/linux/security/advisories/2006_26_sr.html PatchVendor Advisory
http://www.openpkg.org/security/advisories/OpenPKG-SA-2006.030-ruby.html PatchVendor Advisory
http://www.redhat.com/support/errata/RHSA-2006-0729.html PatchVendor Advisory
http://www.securityfocus.com/bid/20777 Patch
http://www.ubuntu.com/usn/usn-371-1 Patch
http://www.vupen.com/english/advisories/2006/4244 Vendor Advisory
http://www.vupen.com/english/advisories/2006/4245 Vendor Advisory
http://www.vupen.com/english/advisories/2007/1939 Vendor Advisory
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10185
ftp://patches.sgi.com/support/free/security/advisories/20061101-01-P PatchVendor Advisory
http://docs.info.apple.com/article.html?artnum=305530
http://lists.apple.com/archives/security-announce/2007/May/msg00004.html
http://rubyforge.org/pipermail/mongrel-users/2006-October/001946.html
http://secunia.com/advisories/22615 PatchVendor Advisory
http://secunia.com/advisories/22624 PatchVendor Advisory
http://secunia.com/advisories/22761 PatchVendor Advisory
http://secunia.com/advisories/22929 PatchVendor Advisory
http://secunia.com/advisories/22932 Vendor Advisory
http://secunia.com/advisories/23040 PatchVendor Advisory
http://secunia.com/advisories/23344 PatchVendor Advisory
http://secunia.com/advisories/25402 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200611-12.xml PatchVendor Advisory
http://securitytracker.com/id?1017194 Patch

Track CVE-2006-5467 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.5CVE-2005-2337Yukihiro matsumoto ruby vulnerabilityRuby 1.6.x up to 1.6.8, 1.8.x up to 1.8.2, and 1.9.0 development up to 2005-09-01 allows attackers to bypass safe level and taint flag protections an…EPSS 3.3%7.5CVE-2005-1992Yukihiro matsumoto ruby vulnerabilityThe XMLRPC server in utils.rb for the ruby library (libruby) 1.8 sets an invalid default value that prevents "security protection" using handlers, wh…EPSS 6.6%6.4CVE-2006-3694Yukihiro matsumoto ruby vulnerabilityMultiple unspecified vulnerabilities in Ruby before 1.8.5 allow remote attackers to bypass "safe level" checks via unspecified vectors involving (1) …EPSS 5.8%5.0CVE-2006-6303Yukihiro matsumoto ruby vulnerabilityThe read_multipart function in cgi.rb in Ruby before 1.8.5-p2 does not properly detect boundaries in MIME multipart content, which allows remote atta…EPSS 3.8%5.0CVE-2006-1931Yukihiro matsumoto ruby vulnerabilityThe HTTP/XMLRPC server in Ruby before 1.8.2 uses blocking sockets, which allows attackers to cause a denial of service (blocked connections) via a la…EPSS 10%5.0CVE-2004-0983Yukihiro matsumoto ruby vulnerabilityThe CGI module in Ruby 1.6 before 1.6.8, and 1.8 before 1.8.2, allows remote attackers to cause a denial of service (infinite loop and CPU consumptio…EPSS 1.9%2.1CVE-2004-0755Yukihiro matsumoto ruby vulnerabilityThe FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local u…EPSS 0.36%8.8CVE-2010-0806Microsoft Internet Explorer Peer Objects use-after-free allows remote code executionInternet Explorer 6, 6 SP1 and 7 contain a use-after-free in the Peer Objects component (iepeers.dll), where an object is accessed after deletion, le…KEVEPSS 82%analysed

Source: NIST National Vulnerability Database (record CVE-2006-5467), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.