Unrated severityNVD Advisory· Published Nov 16, 2014· Updated Jun 17, 2026
CVE-2014-3916
CVE-2014-3916
Description
The str_buf_cat function in string.c in Ruby 1.9.3, 2.0.0, and 2.1 allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:rubyonrails:rails:1.9.3:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:rubyonrails:rails:1.9.3:*:*:*:*:*:*:*
- cpe:2.3:a:rubyonrails:rails:2.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:rubyonrails:rails:2.1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.