ELSA-2024-10860

ELSA-2024-10860 - ruby:3.1 security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2024-12-06

Description


ruby
[3.1.5-145]
- Fix REXML ReDoS vulnerability. (CVE-2024-49761)
Resolves: RHEL-68530

[3.1.5-144]
- Upgrade to Ruby 3.1.5.
Resolves: RHEL-33978
- Fix buffer overread vulnerability in StringIO.
Resolves: RHEL-34129
- Fix RCE vulnerability with .rdoc_options in RDoc.
Resolves: RHEL-34121
- Fix arbitrary memory address read vulnerability with Regex search.
Resolves: RHEL-33871

[3.1.4-143]
- Upgrade to Ruby 3.1.4.
Resolves: RHEL-5586
- Fix HTTP response splitting in CGI.
Resolves: RHEL-5591
- Fix ReDos vulnerability in URI.
Resolves: RHEL-28919
Resolves: RHEL-5612
- Fix ReDos vulnerability in Time.
Resolves: RHEL-28920
- Make RDoc soft dependency in IRB.
Resolves: RHEL-5613

[3.1.2-142]
- Bypass git submodule test failure on Git >= 2.38.1.
- Fix tests with Europe/Amsterdam pre-1970 time on tzdata version 2022b.
- Fix for tzdata-2022g.
- Fix OpenSSL.fips_mode and OpenSSL::PKey.read in OpenSSL 3 FIPS.
Resolves: RHEL-5590
- ssl: use ffdhe2048 from RFC 7919 as the default DH group parameters
Related: RHEL-5590
- Disable fiddle tests that use FFI closures.
Related: RHEL-5590

rubygem-mysql2
[0.5.4-1]
- New upstream release 0.5.4 by merging Fedora rawhide branch (commit: e21b5b9)
Resolves: rhbz#2063773

[0.5.3-1]
- New upstream release 0.5.3 by merging Fedora master branch (commit: 674d475)
Resolves: rhbz#1817135

rubygem-pg
* Thu May 26 2022 Jarek Prokop - 1.3.5-1
- Update to pg 1.3.5
Related: rhbz#2063773

[1.2.3-1]
- Update to pg 1.2.3 by merging Fedora master branch (commit: 5db4d26)
Resolves: rhbz#1817135


Related CVEs


CVE-2024-49761

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) ruby-3.1.5-145.module+el9.5.0+90461+45a3a727.src.rpm953db4e7a8607f95802da47e0970412b30aa1ac9552f0b8b79d4ad42430264d1-ol9_aarch64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.src.rpm3d02677cc63f862a3a44b55b0b5e791c69bd6f4e107fab9acea9b6753c28f78e-ol9_aarch64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.src.rpm3d02677cc63f862a3a44b55b0b5e791c69bd6f4e107fab9acea9b6753c28f78e-ol9_aarch64_appstream_developer
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.src.rpm7f2ab71449603b78507ada3b15b017b057c54d8d7d53794faa63e5db7dbb205f-ol9_aarch64_appstream
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.src.rpm7f2ab71449603b78507ada3b15b017b057c54d8d7d53794faa63e5db7dbb205f-ol9_aarch64_appstream_developer
ruby-3.1.5-145.module+el9.5.0+90461+45a3a727.aarch64.rpm3d73c6bb95e12f16151cfb4e89c3473dbba6523fea6288a324f92a097a7fbaa4-ol9_aarch64_appstream
ruby-bundled-gems-3.1.5-145.module+el9.5.0+90461+45a3a727.aarch64.rpmb1dd68ab4618f91df7f7f6772dc0d23dc7b920789837e38bba076bf39720e329-ol9_aarch64_appstream
ruby-default-gems-3.1.5-145.module+el9.5.0+90461+45a3a727.noarch.rpm69d49a6d327821623009df3382f4aa0532e4c1da6d8208012e7e99786a2e0d52-ol9_aarch64_appstream
ruby-devel-3.1.5-145.module+el9.5.0+90461+45a3a727.aarch64.rpmad97c01949a191fb04fc45c737ce963fb91e8ef5a68c345e92e4e20f94089606-ol9_aarch64_appstream
ruby-doc-3.1.5-145.module+el9.5.0+90461+45a3a727.noarch.rpm0df9a9269bcba7973fd5d8a68c2739dd7bad4f58acad8126cab02b68978412cb-ol9_aarch64_appstream
ruby-libs-3.1.5-145.module+el9.5.0+90461+45a3a727.aarch64.rpm4d1128e6ec212ebb5f70c4895e6b595fa6f9d0c8f9f444bfb685f20348291e02-ol9_aarch64_appstream
rubygem-bigdecimal-3.1.1-145.module+el9.5.0+90461+45a3a727.aarch64.rpmc38685a782cdbb10eaedd7086e877260cc0938994815d62a5623820b989082c8-ol9_aarch64_appstream
rubygem-bundler-2.3.27-145.module+el9.5.0+90461+45a3a727.noarch.rpm3bee4234591a59d432f8efa93d988d9fa3ded310ad29ccaac8e4ba7001649b34-ol9_aarch64_appstream
rubygem-io-console-0.5.11-145.module+el9.5.0+90461+45a3a727.aarch64.rpmaadff74452e35bd51a2c41c5a9590251aa0df6f465932c638769bfa77b29c2d1-ol9_aarch64_appstream
rubygem-irb-1.4.1-145.module+el9.5.0+90461+45a3a727.noarch.rpmc97cf90fc27a308d0a217a3bd85044715b6685e356d4f8ede193ab4bd847c9dd-ol9_aarch64_appstream
rubygem-json-2.6.1-145.module+el9.5.0+90461+45a3a727.aarch64.rpm3f39580a0bf394563203146f1fa5a7be1eed0a16c6467ed8ccf397dfd0ca884f-ol9_aarch64_appstream
rubygem-minitest-5.15.0-145.module+el9.5.0+90461+45a3a727.noarch.rpm8f3d042f9b4e4a7449a505748f06270e86f6b7fcd2348e9d75963d5a079058b3-ol9_aarch64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.aarch64.rpm8cb4bc0c36b6e2430ffa255a92936f8164e7d4635e358b7c7741514840eab0af-ol9_aarch64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.aarch64.rpm8cb4bc0c36b6e2430ffa255a92936f8164e7d4635e358b7c7741514840eab0af-ol9_aarch64_appstream_developer
rubygem-mysql2-doc-0.5.4-1.module+el9.1.0+20815+286161bd.noarch.rpme183db98ebed72059c318935cacb63bdc5bf01909bd2428d431c7a4c50d56f05-ol9_aarch64_appstream
rubygem-mysql2-doc-0.5.4-1.module+el9.1.0+20815+286161bd.noarch.rpme183db98ebed72059c318935cacb63bdc5bf01909bd2428d431c7a4c50d56f05-ol9_aarch64_appstream_developer
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.aarch64.rpm0a5779977c56f4f2041a21dcc8fce44695fbff0ac8141c7c27b780ea1fa59ec1-ol9_aarch64_appstream
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.aarch64.rpm0a5779977c56f4f2041a21dcc8fce44695fbff0ac8141c7c27b780ea1fa59ec1-ol9_aarch64_appstream_developer
rubygem-pg-doc-1.3.5-1.module+el9.1.0+20815+286161bd.noarch.rpm326ee0c31c6ea89daaa1aadda7ffa6087fed305cb8c9ad3ca4b0c989faaec016-ol9_aarch64_appstream
rubygem-pg-doc-1.3.5-1.module+el9.1.0+20815+286161bd.noarch.rpm326ee0c31c6ea89daaa1aadda7ffa6087fed305cb8c9ad3ca4b0c989faaec016-ol9_aarch64_appstream_developer
rubygem-power_assert-2.0.1-145.module+el9.5.0+90461+45a3a727.noarch.rpm39f076177acead6e123af67de0f92fcfd7b64dd77f1d1eef873b44716827a88e-ol9_aarch64_appstream
rubygem-psych-4.0.4-145.module+el9.5.0+90461+45a3a727.aarch64.rpm6632dee1780ff3553b57e592ffc0739c414a52fa1e8faddc4e769395638cfaa8-ol9_aarch64_appstream
rubygem-rake-13.0.6-145.module+el9.5.0+90461+45a3a727.noarch.rpmda11d4d071a1a823e95fdcc593d492563cfe206d9c4ce28181cf4143c28f4cfd-ol9_aarch64_appstream
rubygem-rbs-2.7.0-145.module+el9.5.0+90461+45a3a727.aarch64.rpm5e008c5fee763636cd516d3b35df4d50c34328fc77ad6d1c7f4bd7190eaa381e-ol9_aarch64_appstream
rubygem-rdoc-6.4.1.1-145.module+el9.5.0+90461+45a3a727.noarch.rpm96c2078a3f99809d77425062c6a07b6e1ea7c190e25abe54a4834597582bee91-ol9_aarch64_appstream
rubygem-rexml-3.2.5-145.module+el9.5.0+90461+45a3a727.noarch.rpmd8b69c77414730e45accdb909b248f6aaca4ef74a1a1bb1464d4add2c156fc95-ol9_aarch64_appstream
rubygem-rss-0.2.9-145.module+el9.5.0+90461+45a3a727.noarch.rpm55108e456502616170b8cd6c648909bc709793ea6da89265f4316b7ff5f4c308-ol9_aarch64_appstream
rubygem-test-unit-3.5.3-145.module+el9.5.0+90461+45a3a727.noarch.rpmc79a7038379aa75dde928217947610e684634164e3ed310a046bb9230041d330-ol9_aarch64_appstream
rubygem-typeprof-0.21.3-145.module+el9.5.0+90461+45a3a727.noarch.rpm17937674f0e22ff2f3f9088daab25b8c3f0ba4f5b1491cbda85583decbb765c1-ol9_aarch64_appstream
rubygems-3.3.27-145.module+el9.5.0+90461+45a3a727.noarch.rpm67b703acd2164b1b30f642e2624e3f6cabdcd9786d7654613c34f85b4343ae59-ol9_aarch64_appstream
rubygems-devel-3.3.27-145.module+el9.5.0+90461+45a3a727.noarch.rpmfb818b66d36b73081babd1f411ae0bacafcf4fd0fc750ffbb0539fb618807193-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) ruby-3.1.5-145.module+el9.5.0+90461+45a3a727.src.rpm953db4e7a8607f95802da47e0970412b30aa1ac9552f0b8b79d4ad42430264d1-ol9_x86_64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.src.rpm3d02677cc63f862a3a44b55b0b5e791c69bd6f4e107fab9acea9b6753c28f78e-ol9_x86_64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.src.rpm3d02677cc63f862a3a44b55b0b5e791c69bd6f4e107fab9acea9b6753c28f78e-ol9_x86_64_appstream_developer
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.src.rpm7f2ab71449603b78507ada3b15b017b057c54d8d7d53794faa63e5db7dbb205f-ol9_x86_64_appstream
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.src.rpm7f2ab71449603b78507ada3b15b017b057c54d8d7d53794faa63e5db7dbb205f-ol9_x86_64_appstream_developer
ruby-3.1.5-145.module+el9.5.0+90461+45a3a727.i686.rpmdb743ab0847366014ed4813d73c1fb293e101538931ad432a7264fdfdeaa9607-ol9_x86_64_appstream
ruby-3.1.5-145.module+el9.5.0+90461+45a3a727.x86_64.rpm8bb091361fb7a9df76afb999411f514e7a1203f525f4cd110f9355f926b4a7d9-ol9_x86_64_appstream
ruby-bundled-gems-3.1.5-145.module+el9.5.0+90461+45a3a727.i686.rpm58be8afeac31ee883b165ff316773067368ad7c2920eaa1916a508522af98601-ol9_x86_64_appstream
ruby-bundled-gems-3.1.5-145.module+el9.5.0+90461+45a3a727.x86_64.rpm945bf18b23ab76057fec1f66804f7710f6d11dbce089f1dc77db7b4da0f038af-ol9_x86_64_appstream
ruby-default-gems-3.1.5-145.module+el9.5.0+90461+45a3a727.noarch.rpm69d49a6d327821623009df3382f4aa0532e4c1da6d8208012e7e99786a2e0d52-ol9_x86_64_appstream
ruby-devel-3.1.5-145.module+el9.5.0+90461+45a3a727.i686.rpme0c9ad50f74154cc8139d1e8dad5d60fa22cb73aa2c038182f35096ce8e3daef-ol9_x86_64_appstream
ruby-devel-3.1.5-145.module+el9.5.0+90461+45a3a727.x86_64.rpmb91b0eb90efad2dc0abaa0a53ac5e6e775ba2ff2d278de960a7263ad92ada567-ol9_x86_64_appstream
ruby-doc-3.1.5-145.module+el9.5.0+90461+45a3a727.noarch.rpm0df9a9269bcba7973fd5d8a68c2739dd7bad4f58acad8126cab02b68978412cb-ol9_x86_64_appstream
ruby-libs-3.1.5-145.module+el9.5.0+90461+45a3a727.i686.rpme04f36587a7a1de747bd7d2abedb1635711c9f3679ce1946fbea73129c8ef940-ol9_x86_64_appstream
ruby-libs-3.1.5-145.module+el9.5.0+90461+45a3a727.x86_64.rpmdcafb947aaf9aa5da6e2c5351caf3a904d07f83eb28811b38d9e2209799281ec-ol9_x86_64_appstream
rubygem-bigdecimal-3.1.1-145.module+el9.5.0+90461+45a3a727.i686.rpmaa7614143a1f2d55793f9c389dedbf5eea8608cc2fff7ca6b523482c587dfa62-ol9_x86_64_appstream
rubygem-bigdecimal-3.1.1-145.module+el9.5.0+90461+45a3a727.x86_64.rpm054c8406a883848909b9f8ad71925e2918510273dd743e7ac0552c6815b5c330-ol9_x86_64_appstream
rubygem-bundler-2.3.27-145.module+el9.5.0+90461+45a3a727.noarch.rpm3bee4234591a59d432f8efa93d988d9fa3ded310ad29ccaac8e4ba7001649b34-ol9_x86_64_appstream
rubygem-io-console-0.5.11-145.module+el9.5.0+90461+45a3a727.i686.rpm1ec5790581316eb71ee66a17d667c330c5682c49f17e72b3da247c6e731c9017-ol9_x86_64_appstream
rubygem-io-console-0.5.11-145.module+el9.5.0+90461+45a3a727.x86_64.rpm98b0bdf12edd077f305a866ab86122b4103cfbe1585c1f0dc59d28e6a0e16d3f-ol9_x86_64_appstream
rubygem-irb-1.4.1-145.module+el9.5.0+90461+45a3a727.noarch.rpmc97cf90fc27a308d0a217a3bd85044715b6685e356d4f8ede193ab4bd847c9dd-ol9_x86_64_appstream
rubygem-json-2.6.1-145.module+el9.5.0+90461+45a3a727.i686.rpm31c3e0a114320d072194df911dbd7fba9f33add21a509b4e5a2c9639453b619c-ol9_x86_64_appstream
rubygem-json-2.6.1-145.module+el9.5.0+90461+45a3a727.x86_64.rpmecac3182c6611c8f522a75428828d3bee37b72746ee0ff168cfd0d6c4e94b33f-ol9_x86_64_appstream
rubygem-minitest-5.15.0-145.module+el9.5.0+90461+45a3a727.noarch.rpm8f3d042f9b4e4a7449a505748f06270e86f6b7fcd2348e9d75963d5a079058b3-ol9_x86_64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.x86_64.rpmf52f2e4f4788b6aa3d57e414e698fb573f382303d6b5d6f9b1706918fcf97b0c-ol9_x86_64_appstream
rubygem-mysql2-0.5.4-1.module+el9.1.0+20815+286161bd.x86_64.rpmf52f2e4f4788b6aa3d57e414e698fb573f382303d6b5d6f9b1706918fcf97b0c-ol9_x86_64_appstream_developer
rubygem-mysql2-doc-0.5.4-1.module+el9.1.0+20815+286161bd.noarch.rpme183db98ebed72059c318935cacb63bdc5bf01909bd2428d431c7a4c50d56f05-ol9_x86_64_appstream
rubygem-mysql2-doc-0.5.4-1.module+el9.1.0+20815+286161bd.noarch.rpme183db98ebed72059c318935cacb63bdc5bf01909bd2428d431c7a4c50d56f05-ol9_x86_64_appstream_developer
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.x86_64.rpmb274d948955b2c4b8e668dd46d5206722a72c0995ce6b94807531dc8020fbcde-ol9_x86_64_appstream
rubygem-pg-1.3.5-1.module+el9.1.0+20815+286161bd.x86_64.rpmb274d948955b2c4b8e668dd46d5206722a72c0995ce6b94807531dc8020fbcde-ol9_x86_64_appstream_developer
rubygem-pg-doc-1.3.5-1.module+el9.1.0+20815+286161bd.noarch.rpm326ee0c31c6ea89daaa1aadda7ffa6087fed305cb8c9ad3ca4b0c989faaec016-ol9_x86_64_appstream
rubygem-pg-doc-1.3.5-1.module+el9.1.0+20815+286161bd.noarch.rpm326ee0c31c6ea89daaa1aadda7ffa6087fed305cb8c9ad3ca4b0c989faaec016-ol9_x86_64_appstream_developer
rubygem-power_assert-2.0.1-145.module+el9.5.0+90461+45a3a727.noarch.rpm39f076177acead6e123af67de0f92fcfd7b64dd77f1d1eef873b44716827a88e-ol9_x86_64_appstream
rubygem-psych-4.0.4-145.module+el9.5.0+90461+45a3a727.i686.rpma0e6ee5e10b14dc0acb66051fee9701ab2dc7dd37d503005b3c9e9c172646ebd-ol9_x86_64_appstream
rubygem-psych-4.0.4-145.module+el9.5.0+90461+45a3a727.x86_64.rpm07f2259279fb56a849e636ee18c5089dd309954d8ff70a4564c61715accfa9d2-ol9_x86_64_appstream
rubygem-rake-13.0.6-145.module+el9.5.0+90461+45a3a727.noarch.rpmda11d4d071a1a823e95fdcc593d492563cfe206d9c4ce28181cf4143c28f4cfd-ol9_x86_64_appstream
rubygem-rbs-2.7.0-145.module+el9.5.0+90461+45a3a727.i686.rpmb9e58f1ba98b116ba240be76026f5975257e5bcbee95258ab00e8b52c2a282a6-ol9_x86_64_appstream
rubygem-rbs-2.7.0-145.module+el9.5.0+90461+45a3a727.x86_64.rpm4f195e5330621fd871e92730cae421bec2ec3c073dd81a94f68e12425c1a4ce1-ol9_x86_64_appstream
rubygem-rdoc-6.4.1.1-145.module+el9.5.0+90461+45a3a727.noarch.rpm96c2078a3f99809d77425062c6a07b6e1ea7c190e25abe54a4834597582bee91-ol9_x86_64_appstream
rubygem-rexml-3.2.5-145.module+el9.5.0+90461+45a3a727.noarch.rpmd8b69c77414730e45accdb909b248f6aaca4ef74a1a1bb1464d4add2c156fc95-ol9_x86_64_appstream
rubygem-rss-0.2.9-145.module+el9.5.0+90461+45a3a727.noarch.rpm55108e456502616170b8cd6c648909bc709793ea6da89265f4316b7ff5f4c308-ol9_x86_64_appstream
rubygem-test-unit-3.5.3-145.module+el9.5.0+90461+45a3a727.noarch.rpmc79a7038379aa75dde928217947610e684634164e3ed310a046bb9230041d330-ol9_x86_64_appstream
rubygem-typeprof-0.21.3-145.module+el9.5.0+90461+45a3a727.noarch.rpm17937674f0e22ff2f3f9088daab25b8c3f0ba4f5b1491cbda85583decbb765c1-ol9_x86_64_appstream
rubygems-3.3.27-145.module+el9.5.0+90461+45a3a727.noarch.rpm67b703acd2164b1b30f642e2624e3f6cabdcd9786d7654613c34f85b4343ae59-ol9_x86_64_appstream
rubygems-devel-3.3.27-145.module+el9.5.0+90461+45a3a727.noarch.rpmfb818b66d36b73081babd1f411ae0bacafcf4fd0fc750ffbb0539fb618807193-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete