AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-0188

MEDIUM · CVSS 6.8 EPSS 3.02%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-03-23 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.8. It may lead to a denial-of-service condition.

CVE
CVE-2011-0188
Severity
MEDIUM
CVSS
6.8
EPSS
3.02%

Original NVD Description

The VpMemAlloc function in bigdecimal.c in the BigDecimal class in Ruby 1.9.2-p136 and earlier, as used on Apple Mac OS X before 10.6.7 and other platforms, does not properly allocate memory, which allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving creation of a large BigDecimal value within a 64-bit process, related to an "integer truncation issue."