Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise.
References
Link | Resource |
---|---|
https://github.com/advisories/GHSA-2xxx-fhc8-9qvq | Third Party Advisory |
https://github.com/elixir-ecto/ecto/commit/db55b0cba6525c24ebddc88ef9ae0c1c00620250 | Patch Third Party Advisory |
https://github.com/elixir-ecto/ecto/pull/2125 | Exploit Third Party Advisory |
https://groups.google.com/forum/#%21topic/elixir-ecto/0m4NPfg_MMU | |
https://github.com/advisories/GHSA-2xxx-fhc8-9qvq | Third Party Advisory |
https://github.com/elixir-ecto/ecto/commit/db55b0cba6525c24ebddc88ef9ae0c1c00620250 | Patch Third Party Advisory |
https://github.com/elixir-ecto/ecto/pull/2125 | Exploit Third Party Advisory |
https://groups.google.com/forum/#%21topic/elixir-ecto/0m4NPfg_MMU |
Configurations
History
21 Nov 2024, 03:22
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/advisories/GHSA-2xxx-fhc8-9qvq - Third Party Advisory | |
References | () https://github.com/elixir-ecto/ecto/commit/db55b0cba6525c24ebddc88ef9ae0c1c00620250 - Patch, Third Party Advisory | |
References | () https://github.com/elixir-ecto/ecto/pull/2125 - Exploit, Third Party Advisory | |
References | () https://groups.google.com/forum/#%21topic/elixir-ecto/0m4NPfg_MMU - | |
Summary |
|
07 Nov 2023, 02:43
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2023-01-10 06:15
Updated : 2024-11-21 03:22
NVD link : CVE-2017-20166
Mitre link : CVE-2017-20166
CVE.ORG link : CVE-2017-20166
JSON object : View
Products Affected
ecto_project
- ecto
CWE