[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2022:0543-01 -- Redhat ruby

ID: oval:org.secpod.oval:def:506699Date: (C)2022-03-16   (M)2024-01-29
Class: PATCHFamily: unix




Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks. Security Fix: * rubygem-bundler: Dependencies of gems with explicit source may be installed from a different source * rubygem-rdoc: Command injection vulnerability in RDoc * ruby: FTP PASV command response can cause Net::FTP to connect to arbitrary host * ruby: StartTLS stripping vulnerability in Net::IMAP * ruby: Regular expression denial of service vulnerability of Date parsing methods * ruby: Cookie prefix spoofing in CGI::Cookie.parse For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
Red Hat Enterprise Linux 8
Product:
ruby
Reference:
RHSA-2022:0543-01
CVE-2020-36327
CVE-2021-31799
CVE-2021-31810
CVE-2021-32066
CVE-2021-41817
CVE-2021-41819
CVE    6
CVE-2020-36327
CVE-2021-32066
CVE-2021-31799
CVE-2021-31810
...

© SecPod Technologies