ELSA-2022-5779

ELSA-2022-5779 - ruby:2.5 security update

Type:SECURITY
Severity:MODERATE
Release Date:2022-08-03

Description


ruby
[2.5.9-110]
- Fix FTBFS due to an incompatible load directive.
- Fix a fiddle import test on an optimized glibc on Power 9.
- Fix by adding length limit option for methods that parses date strings.
Resolves: CVE-2021-41817
- CGI::Cookie.parse no longer decodes cookie names to prevent spoofing security
prefixes in cookie names.
Resolves: CVE-2021-41819


Related CVEs


CVE-2021-41817
CVE-2021-41819

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) ruby-2.5.9-110.module+el8.6.0+20712+84e27c2d.src.rpm1357e8d27f8f127eea428c7ff7b40af6-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.src.rpm8c1912ac0a0a9432f4e8e5ab23adc695-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.src.rpmb524bf069aeebba1d08eef4a152db84a-
rubygem-bundler-1.16.1-4.module+el8.6.0+20712+84e27c2d.src.rpm0eef9aa15d02cb051067c223ed90224f-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.src.rpm5434ada94d9c14468e6bda87584bd8d9-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.src.rpm890a42b2ff3b41a2077b3dc460f41a41-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.src.rpm48647584f601c8e09ab8eb5847866029-
ruby-2.5.9-110.module+el8.6.0+20712+84e27c2d.aarch64.rpm1a1a870bcffd98dd2bd7e3e148026e6a-
ruby-devel-2.5.9-110.module+el8.6.0+20712+84e27c2d.aarch64.rpme60d855cc26eebcb5c1b67f0c8032fe9-
ruby-doc-2.5.9-110.module+el8.6.0+20712+84e27c2d.noarch.rpme2a09eb3b00a4ed23a3ead547be94d71-
ruby-irb-2.5.9-110.module+el8.6.0+20712+84e27c2d.noarch.rpmc0d62eb83154196f4762f31de1a799de-
ruby-libs-2.5.9-110.module+el8.6.0+20712+84e27c2d.aarch64.rpmddd9f7335c3b2227b40ae5cff01f192d-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpm2c1f455db3d9dc398487387d9f2657b5-
rubygem-abrt-doc-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpma0ec6f9ec5bdfd90f372beb4ea589b7e-
rubygem-bigdecimal-1.3.4-110.module+el8.6.0+20712+84e27c2d.aarch64.rpmdb2bd3ccb307f94c696b701a909286db-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.aarch64.rpmb100a5c18c3b16157562b649b0f1a5bc-
rubygem-bson-doc-4.3.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm30b6fa087891b7447cba6757347e3ce0-
rubygem-bundler-1.16.1-4.module+el8.6.0+20712+84e27c2d.noarch.rpm4babc084411c429653631bc1dd26a2d8-
rubygem-bundler-doc-1.16.1-4.module+el8.6.0+20712+84e27c2d.noarch.rpm753406ff195f4152a4af277266f62021-
rubygem-did_you_mean-1.2.0-110.module+el8.6.0+20712+84e27c2d.noarch.rpmf654324124637bf2d5cd06fb4470f5c1-
rubygem-io-console-0.4.6-110.module+el8.6.0+20712+84e27c2d.aarch64.rpm2cfde513b42e418f81d244dd46603d16-
rubygem-json-2.1.0-110.module+el8.6.0+20712+84e27c2d.aarch64.rpmf765eb1683e84ca9357b06191ca04311-
rubygem-minitest-5.10.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpmaa833fc3b70c558aeb2e6479d6fcf137-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpm60f221c9fe3881fd0706565f4d771ae1-
rubygem-mongo-doc-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpma49f07445064dbeef751538d0965ba23-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.aarch64.rpm70200a281132749113364106e995f066-
rubygem-mysql2-doc-0.4.10-4.module+el8.3.0+7756+e45777e9.noarch.rpm869c17ab0158259ad781e94ba26f8754-
rubygem-net-telnet-0.1.1-110.module+el8.6.0+20712+84e27c2d.noarch.rpma70e316f74b1c81137b648a867ae342a-
rubygem-openssl-2.1.2-110.module+el8.6.0+20712+84e27c2d.aarch64.rpm45d0f36f3c8acd9fad516119ff546384-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.aarch64.rpm1e5b8e0f6e2e4503c315826234639fae-
rubygem-pg-doc-1.0.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm2cc32bf402c0aa6bc727865302b91a98-
rubygem-power_assert-1.1.1-110.module+el8.6.0+20712+84e27c2d.noarch.rpmbf771859631b81b5b270003288a0b777-
rubygem-psych-3.0.2-110.module+el8.6.0+20712+84e27c2d.aarch64.rpmf90301850ad6a36448d1e7a37a78ebad-
rubygem-rake-12.3.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpm036ceecbbb4bb571bb42e54934d7a8f5-
rubygem-rdoc-6.0.1.1-110.module+el8.6.0+20712+84e27c2d.noarch.rpm7c67fce03855ef6754b4553c995a5e54-
rubygem-test-unit-3.2.7-110.module+el8.6.0+20712+84e27c2d.noarch.rpmc8fbc9c838707ccd8dc633a814aeb627-
rubygem-xmlrpc-0.3.0-110.module+el8.6.0+20712+84e27c2d.noarch.rpm304949956fde032c76a4f83f45d2d314-
rubygems-2.7.6.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpm5cf5d6e462d66d4431dc3fabdd56928d-
rubygems-devel-2.7.6.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpma27c542d4cb695ae186053772b701622-
Oracle Linux 8 (x86_64) ruby-2.5.9-110.module+el8.6.0+20712+84e27c2d.src.rpm1357e8d27f8f127eea428c7ff7b40af6-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.src.rpm8c1912ac0a0a9432f4e8e5ab23adc695-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.src.rpmb524bf069aeebba1d08eef4a152db84a-
rubygem-bundler-1.16.1-4.module+el8.6.0+20712+84e27c2d.src.rpm0eef9aa15d02cb051067c223ed90224f-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.src.rpm5434ada94d9c14468e6bda87584bd8d9-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.src.rpm890a42b2ff3b41a2077b3dc460f41a41-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.src.rpm48647584f601c8e09ab8eb5847866029-
ruby-2.5.9-110.module+el8.6.0+20712+84e27c2d.i686.rpm45f99b172d29a918c8c0580c44c1842e-
ruby-2.5.9-110.module+el8.6.0+20712+84e27c2d.x86_64.rpmd7496cf7600aea5b1e58e54134bf7036-
ruby-devel-2.5.9-110.module+el8.6.0+20712+84e27c2d.i686.rpm1e22adfe46e024180290aec84509a657-
ruby-devel-2.5.9-110.module+el8.6.0+20712+84e27c2d.x86_64.rpm823f7e92f531517526f1593eef400d58-
ruby-doc-2.5.9-110.module+el8.6.0+20712+84e27c2d.noarch.rpme2a09eb3b00a4ed23a3ead547be94d71-
ruby-irb-2.5.9-110.module+el8.6.0+20712+84e27c2d.noarch.rpmc0d62eb83154196f4762f31de1a799de-
ruby-libs-2.5.9-110.module+el8.6.0+20712+84e27c2d.i686.rpm0fe3983d37c68e55feeea3005f3eb221-
ruby-libs-2.5.9-110.module+el8.6.0+20712+84e27c2d.x86_64.rpm2f51e6c32324ab7f172ccfb074acb37f-
rubygem-abrt-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpm2c1f455db3d9dc398487387d9f2657b5-
rubygem-abrt-doc-0.3.0-4.module+el8.3.0+7756+e45777e9.noarch.rpma0ec6f9ec5bdfd90f372beb4ea589b7e-
rubygem-bigdecimal-1.3.4-110.module+el8.6.0+20712+84e27c2d.i686.rpm716003d91a8eb66467ea7f6e805e4880-
rubygem-bigdecimal-1.3.4-110.module+el8.6.0+20712+84e27c2d.x86_64.rpm359efa9f7517e8b7e9be70040a4e94b9-
rubygem-bson-4.3.0-2.module+el8.3.0+7756+e45777e9.x86_64.rpm46648d91948bd82dba10d4a35517d382-
rubygem-bson-doc-4.3.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm30b6fa087891b7447cba6757347e3ce0-
rubygem-bundler-1.16.1-4.module+el8.6.0+20712+84e27c2d.noarch.rpm4babc084411c429653631bc1dd26a2d8-
rubygem-bundler-doc-1.16.1-4.module+el8.6.0+20712+84e27c2d.noarch.rpm753406ff195f4152a4af277266f62021-
rubygem-did_you_mean-1.2.0-110.module+el8.6.0+20712+84e27c2d.noarch.rpmf654324124637bf2d5cd06fb4470f5c1-
rubygem-io-console-0.4.6-110.module+el8.6.0+20712+84e27c2d.i686.rpm2938c5b03cfcaa728b58dabc5cd274ba-
rubygem-io-console-0.4.6-110.module+el8.6.0+20712+84e27c2d.x86_64.rpmf7b4a334998b0ee33ae133b80457af4c-
rubygem-json-2.1.0-110.module+el8.6.0+20712+84e27c2d.i686.rpmfa181e9a047d6600e7f6a5558705545c-
rubygem-json-2.1.0-110.module+el8.6.0+20712+84e27c2d.x86_64.rpmbcef9fd00ad6fbf5cec49daf3344f978-
rubygem-minitest-5.10.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpmaa833fc3b70c558aeb2e6479d6fcf137-
rubygem-mongo-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpm60f221c9fe3881fd0706565f4d771ae1-
rubygem-mongo-doc-2.5.1-2.module+el8.3.0+7756+e45777e9.noarch.rpma49f07445064dbeef751538d0965ba23-
rubygem-mysql2-0.4.10-4.module+el8.3.0+7756+e45777e9.x86_64.rpm3a077c160008a47b3b7ef341d80b070b-
rubygem-mysql2-doc-0.4.10-4.module+el8.3.0+7756+e45777e9.noarch.rpm869c17ab0158259ad781e94ba26f8754-
rubygem-net-telnet-0.1.1-110.module+el8.6.0+20712+84e27c2d.noarch.rpma70e316f74b1c81137b648a867ae342a-
rubygem-openssl-2.1.2-110.module+el8.6.0+20712+84e27c2d.i686.rpm66fc36c9e5c6ec365a1b5bf8fec9da38-
rubygem-openssl-2.1.2-110.module+el8.6.0+20712+84e27c2d.x86_64.rpm01b7a1c466e49179f93a3cac25247749-
rubygem-pg-1.0.0-2.module+el8.3.0+7756+e45777e9.x86_64.rpm6f096510201258ad47359dd426f0937d-
rubygem-pg-doc-1.0.0-2.module+el8.3.0+7756+e45777e9.noarch.rpm2cc32bf402c0aa6bc727865302b91a98-
rubygem-power_assert-1.1.1-110.module+el8.6.0+20712+84e27c2d.noarch.rpmbf771859631b81b5b270003288a0b777-
rubygem-psych-3.0.2-110.module+el8.6.0+20712+84e27c2d.i686.rpmcc4137721c2e124098b53d6e398f9161-
rubygem-psych-3.0.2-110.module+el8.6.0+20712+84e27c2d.x86_64.rpma2f7df3741d2c0805db2038f95670114-
rubygem-rake-12.3.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpm036ceecbbb4bb571bb42e54934d7a8f5-
rubygem-rdoc-6.0.1.1-110.module+el8.6.0+20712+84e27c2d.noarch.rpm7c67fce03855ef6754b4553c995a5e54-
rubygem-test-unit-3.2.7-110.module+el8.6.0+20712+84e27c2d.noarch.rpmc8fbc9c838707ccd8dc633a814aeb627-
rubygem-xmlrpc-0.3.0-110.module+el8.6.0+20712+84e27c2d.noarch.rpm304949956fde032c76a4f83f45d2d314-
rubygems-2.7.6.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpm5cf5d6e462d66d4431dc3fabdd56928d-
rubygems-devel-2.7.6.3-110.module+el8.6.0+20712+84e27c2d.noarch.rpma27c542d4cb695ae186053772b701622-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete