Denial of service attack was found for Ruby's Hash algorithm (CVE-2011-4815)
Impact
This is something related to computational complexity. Specially crafted series of strings that intentionally collide their hash values each other was found. With such sequences an attacker can issue a denial of service attack by, for instance, giving them as POST parameters of HTTP requests for your Rails application.
Posted by Urabe Shyouhei on 28 Dec 2011

