ELSA-2022-0672

ELSA-2022-0672 - ruby:2.5 security update

Type:SECURITY
Severity:MODERATE
Release Date:2022-02-28

Description


ruby
[2.5.9-109]
- Properly fix command injection vulnerability in Rdoc.
Related: CVE-2021-31799

[2.5.9-108]
- Fix command injection vulnerability in RDoc.
Resolves: CVE-2021-31799
- Fix StartTLS stripping vulnerability in Net::IMAP
Resolves: CVE-2021-32066
- Fix FTP PASV command response can cause Net::FTP to connect to arbitrary host.
Resolves: CVE-2021-31810


Related CVEs


CVE-2021-31799
CVE-2021-32066
CVE-2021-31810

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) ruby-2.5.9-109.module+el8.5.0+20502+13af163c.src.rpm270a9fb83e16841fc6f5c403e3d046ba-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.src.rpm8c1912ac0a0a9432f4e8e5ab23adc695-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.src.rpmb524bf069aeebba1d08eef4a152db84a-
rubygem-bundler-1.16.1-4.module+el8.5.0+20497+d0a7b862.src.rpm34116d51602b20159598615489edea78-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.src.rpm5434ada94d9c14468e6bda87584bd8d9-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.src.rpm890a42b2ff3b41a2077b3dc460f41a41-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.src.rpm48647584f601c8e09ab8eb5847866029-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpm2c1f455db3d9dc398487387d9f2657b5-
rubygem-abrt-doc-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpma0ec6f9ec5bdfd90f372beb4ea589b7e-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.aarch64.rpmb100a5c18c3b16157562b649b0f1a5bc-
rubygem-bson-doc-4.3.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm30b6fa087891b7447cba6757347e3ce0-
rubygem-bundler-1.16.1-4.module+el8.5.0+20497+d0a7b862.noarch.rpmd758f2212a6c4649839b73888885a009-
rubygem-bundler-doc-1.16.1-4.module+el8.5.0+20497+d0a7b862.noarch.rpm589a046c0fabffd62c19b334f9841918-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpm60f221c9fe3881fd0706565f4d771ae1-
rubygem-mongo-doc-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpma49f07445064dbeef751538d0965ba23-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.aarch64.rpm70200a281132749113364106e995f066-
rubygem-mysql2-doc-0.4.10-4.module+el8.3.0+7756+e45777e9.noarch.rpm869c17ab0158259ad781e94ba26f8754-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.aarch64.rpm1e5b8e0f6e2e4503c315826234639fae-
rubygem-pg-doc-1.0.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm2cc32bf402c0aa6bc727865302b91a98-
Oracle Linux 8 (x86_64) ruby-2.5.9-109.module+el8.5.0+20502+13af163c.src.rpm270a9fb83e16841fc6f5c403e3d046ba-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.src.rpm8c1912ac0a0a9432f4e8e5ab23adc695-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.src.rpmb524bf069aeebba1d08eef4a152db84a-
rubygem-bundler-1.16.1-4.module+el8.5.0+20497+d0a7b862.src.rpm34116d51602b20159598615489edea78-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.src.rpm5434ada94d9c14468e6bda87584bd8d9-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.src.rpm890a42b2ff3b41a2077b3dc460f41a41-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.src.rpm48647584f601c8e09ab8eb5847866029-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpm2c1f455db3d9dc398487387d9f2657b5-
rubygem-abrt-doc-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpma0ec6f9ec5bdfd90f372beb4ea589b7e-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.x86_64.rpm46648d91948bd82dba10d4a35517d382-
rubygem-bson-doc-4.3.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm30b6fa087891b7447cba6757347e3ce0-
rubygem-bundler-1.16.1-4.module+el8.5.0+20497+d0a7b862.noarch.rpmd758f2212a6c4649839b73888885a009-
rubygem-bundler-doc-1.16.1-4.module+el8.5.0+20497+d0a7b862.noarch.rpm589a046c0fabffd62c19b334f9841918-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpm60f221c9fe3881fd0706565f4d771ae1-
rubygem-mongo-doc-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpma49f07445064dbeef751538d0965ba23-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.x86_64.rpm3a077c160008a47b3b7ef341d80b070b-
rubygem-mysql2-doc-0.4.10-4.module+el8.3.0+7756+e45777e9.noarch.rpm869c17ab0158259ad781e94ba26f8754-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.x86_64.rpm6f096510201258ad47359dd426f0937d-
rubygem-pg-doc-1.0.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm2cc32bf402c0aa6bc727865302b91a98-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete