ELSA-2024-3670

ELSA-2024-3670 - ruby:3.3 security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2024-06-07

Description


ruby
[3.3.1-2]
- Upgrade to Ruby 3.3.1.
Resolves: RHEL-37446
- Fix buffer overread vulnerability in StringIO.
(CVE-2024-27280)
Resolves: RHEL-37448
- Fix RCE vulnerability with .rdoc_options in RDoc.
(CVE-2024-27281)
Resolves: RHEL-37449
- Fix Arbitrary memory address read vulnerability with Regex search.
(CVE-2024-27282)
Resolves: RHEL-37447

rubygem-abrt
rubygem-mysql2
[0.5.5-1]
- Upgrade to mysql2 0.5.5.
Related: RHEL-17090

rubygem-pg
[1.5.4-1]
- Upgrade to pg 1.5.4.
Related: RHEL-17090

[1.3.2-1]
- Update to pg 1.3.2 by merging Fedora rawhide branch (commit: 39bbd1b)
Resolves: rhbz#2063772


Related CVEs


CVE-2024-27281
CVE-2024-27280
CVE-2024-27282

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) ruby-3.3.1-2.module+el8.10.0+90349+dd8a48dc.src.rpm6d9a342c86c46f2b48a1a0e58092e0c6-ol8_aarch64_appstream
rubygem-abrt-0.4.0-1.module+el8.10.0+90287+d51aa4ed.src.rpm3eff7c669272156f4e4db17b73c60d90-ol8_aarch64_appstream
rubygem-mysql2-0.5.5-1.module+el8.10.0+90287+d51aa4ed.src.rpmf31db448931f8e961a00722cd75dfb1a-ol8_aarch64_appstream
rubygem-pg-1.5.4-1.module+el8.10.0+90287+d51aa4ed.src.rpm6c48ee5a6fe028f0bce987b4cd3ebf2d-ol8_aarch64_appstream
ruby-3.3.1-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpm7a65f09485e1d52f54d3fd83de0090ba-ol8_aarch64_appstream
ruby-bundled-gems-3.3.1-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpm11972b052fd3518fe433b15160a84cd2-ol8_aarch64_appstream
ruby-default-gems-3.3.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm8d41744778a0dd10509a326d926607b9-ol8_aarch64_appstream
ruby-devel-3.3.1-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpmc6c62e2217c6abfe23646c3252c70948-ol8_aarch64_appstream
ruby-doc-3.3.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmb902c9a6e38bdabaaca10f367396a812-ol8_aarch64_appstream
ruby-libs-3.3.1-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpmaa9a34c3d8898488ce3a22e6b0df36d2-ol8_aarch64_appstream
rubygem-abrt-0.4.0-1.module+el8.10.0+90287+d51aa4ed.noarch.rpm7c8470389c9a52ab74843cce3e628930-ol8_aarch64_appstream
rubygem-abrt-doc-0.4.0-1.module+el8.10.0+90287+d51aa4ed.noarch.rpme70af522902be3e450f04f5bbc09cd5d-ol8_aarch64_appstream
rubygem-bigdecimal-3.1.5-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpm35c625f6ee8c5eb7bf242ae7ac991dfb-ol8_aarch64_appstream
rubygem-bundler-2.5.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm9e1d64d66fdbe694e4e6a49aab7d30b0-ol8_aarch64_appstream
rubygem-io-console-0.7.1-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpm4a9190c55003a4cc1b1f209debe27c22-ol8_aarch64_appstream
rubygem-irb-1.11.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm45f3fd324cc4591aa312abc9462095d7-ol8_aarch64_appstream
rubygem-json-2.7.1-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpmfdbbcc7cec3b0770d92d879feca8af59-ol8_aarch64_appstream
rubygem-minitest-5.20.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm5c14087cf000a20bee5bbaa5c4176696-ol8_aarch64_appstream
rubygem-mysql2-0.5.5-1.module+el8.10.0+90287+d51aa4ed.aarch64.rpm4ac4193156d614f6b926bd93d6c67928-ol8_aarch64_appstream
rubygem-mysql2-doc-0.5.5-1.module+el8.10.0+90287+d51aa4ed.noarch.rpm50b177727620e1d201ccae78d93736c3-ol8_aarch64_appstream
rubygem-pg-1.5.4-1.module+el8.10.0+90287+d51aa4ed.aarch64.rpm3239757b3081f9fe451879c717a2803b-ol8_aarch64_appstream
rubygem-pg-doc-1.5.4-1.module+el8.10.0+90287+d51aa4ed.noarch.rpm10911a6714d3d58e8bc060da6096d26c-ol8_aarch64_appstream
rubygem-power_assert-2.0.3-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm9e1f8e645d277ea92d4fbf2d0f1e557f-ol8_aarch64_appstream
rubygem-psych-5.1.2-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpm1fa4c7a06080d15f7c5f739c833f835f-ol8_aarch64_appstream
rubygem-racc-1.7.3-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpm0221840eeb2565d93a9a366c7bdf92ab-ol8_aarch64_appstream
rubygem-rake-13.1.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmce5ce5f4d341a01b3c5c91f9a5b93a05-ol8_aarch64_appstream
rubygem-rbs-3.4.0-2.module+el8.10.0+90349+dd8a48dc.aarch64.rpma1471de60333d3b3d2c3ae3299f4c3e3-ol8_aarch64_appstream
rubygem-rdoc-6.6.3.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm77119cd8a59133eb71c714f896536ae2-ol8_aarch64_appstream
rubygem-rexml-3.2.6-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm182f97f4bac44804e30525fa4ff20788-ol8_aarch64_appstream
rubygem-rss-0.3.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm7044a3dc21f16b9cfe42091714a7e866-ol8_aarch64_appstream
rubygem-test-unit-3.6.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmeab417dd0f89e214bb7f3df60630de6b-ol8_aarch64_appstream
rubygem-typeprof-0.21.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm3297bb2dbaee67fde3eca4e15b656275-ol8_aarch64_appstream
rubygems-3.5.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmee73ad7245a56c7fb2cebab14c9fbd24-ol8_aarch64_appstream
rubygems-devel-3.5.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm5e6832a70b5aebc949f589cc0e3113c9-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) ruby-3.3.1-2.module+el8.10.0+90349+dd8a48dc.src.rpm6d9a342c86c46f2b48a1a0e58092e0c6-ol8_x86_64_appstream
rubygem-abrt-0.4.0-1.module+el8.10.0+90287+d51aa4ed.src.rpm3eff7c669272156f4e4db17b73c60d90-ol8_x86_64_appstream
rubygem-mysql2-0.5.5-1.module+el8.10.0+90287+d51aa4ed.src.rpmf31db448931f8e961a00722cd75dfb1a-ol8_x86_64_appstream
rubygem-pg-1.5.4-1.module+el8.10.0+90287+d51aa4ed.src.rpm6c48ee5a6fe028f0bce987b4cd3ebf2d-ol8_x86_64_appstream
ruby-3.3.1-2.module+el8.10.0+90349+dd8a48dc.i686.rpm1805d98097054e7eac8e022f31ac7854-ol8_x86_64_appstream
ruby-3.3.1-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm29258dee112a31d055a30d292f0898fa-ol8_x86_64_appstream
ruby-bundled-gems-3.3.1-2.module+el8.10.0+90349+dd8a48dc.i686.rpm42fd29669f655d673e89874038a9ef3f-ol8_x86_64_appstream
ruby-bundled-gems-3.3.1-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm6daff22b3c531eb90dbb459e809f9ae0-ol8_x86_64_appstream
ruby-default-gems-3.3.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm8d41744778a0dd10509a326d926607b9-ol8_x86_64_appstream
ruby-devel-3.3.1-2.module+el8.10.0+90349+dd8a48dc.i686.rpm98270acfc72bf7ff50ce18657710fdf7-ol8_x86_64_appstream
ruby-devel-3.3.1-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm4b163985809926fa7720502757eff1f2-ol8_x86_64_appstream
ruby-doc-3.3.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmb902c9a6e38bdabaaca10f367396a812-ol8_x86_64_appstream
ruby-libs-3.3.1-2.module+el8.10.0+90349+dd8a48dc.i686.rpmbcbd12a40fcdf141d0c01304d6535cf4-ol8_x86_64_appstream
ruby-libs-3.3.1-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm911f98f27de81612cfeb6ba5713abe58-ol8_x86_64_appstream
rubygem-abrt-0.4.0-1.module+el8.10.0+90287+d51aa4ed.noarch.rpm7c8470389c9a52ab74843cce3e628930-ol8_x86_64_appstream
rubygem-abrt-doc-0.4.0-1.module+el8.10.0+90287+d51aa4ed.noarch.rpme70af522902be3e450f04f5bbc09cd5d-ol8_x86_64_appstream
rubygem-bigdecimal-3.1.5-2.module+el8.10.0+90349+dd8a48dc.i686.rpma0036ba157f92bccf5150053ba65e87d-ol8_x86_64_appstream
rubygem-bigdecimal-3.1.5-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpmd979f01e2743f49e914102ec8b11ddd5-ol8_x86_64_appstream
rubygem-bundler-2.5.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm9e1d64d66fdbe694e4e6a49aab7d30b0-ol8_x86_64_appstream
rubygem-io-console-0.7.1-2.module+el8.10.0+90349+dd8a48dc.i686.rpm600a0f5f764ff2b30f784e02f1a2d4a7-ol8_x86_64_appstream
rubygem-io-console-0.7.1-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm8db739a04db8453212cb5dd31a9ce146-ol8_x86_64_appstream
rubygem-irb-1.11.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm45f3fd324cc4591aa312abc9462095d7-ol8_x86_64_appstream
rubygem-json-2.7.1-2.module+el8.10.0+90349+dd8a48dc.i686.rpm6630e6955ae5f32a35a89f25c4c07d88-ol8_x86_64_appstream
rubygem-json-2.7.1-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm4004c33c8e176d475adef982f1d7e153-ol8_x86_64_appstream
rubygem-minitest-5.20.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm5c14087cf000a20bee5bbaa5c4176696-ol8_x86_64_appstream
rubygem-mysql2-0.5.5-1.module+el8.10.0+90287+d51aa4ed.x86_64.rpmad3cce2b22df5f285b3d52527c0e133a-ol8_x86_64_appstream
rubygem-mysql2-doc-0.5.5-1.module+el8.10.0+90287+d51aa4ed.noarch.rpm50b177727620e1d201ccae78d93736c3-ol8_x86_64_appstream
rubygem-pg-1.5.4-1.module+el8.10.0+90287+d51aa4ed.x86_64.rpm24b6aece29e2ffc62a94040a2a4cc812-ol8_x86_64_appstream
rubygem-pg-doc-1.5.4-1.module+el8.10.0+90287+d51aa4ed.noarch.rpm10911a6714d3d58e8bc060da6096d26c-ol8_x86_64_appstream
rubygem-power_assert-2.0.3-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm9e1f8e645d277ea92d4fbf2d0f1e557f-ol8_x86_64_appstream
rubygem-psych-5.1.2-2.module+el8.10.0+90349+dd8a48dc.i686.rpmf475b63f868a75a8681e621911aa1a86-ol8_x86_64_appstream
rubygem-psych-5.1.2-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpmb5e85ea7711d1bb6169c5d2d8ba7b478-ol8_x86_64_appstream
rubygem-racc-1.7.3-2.module+el8.10.0+90349+dd8a48dc.i686.rpmd1f91e46fcbd90870238c8278bccdf92-ol8_x86_64_appstream
rubygem-racc-1.7.3-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm8721da52027b37edb8736b2da97c7c62-ol8_x86_64_appstream
rubygem-rake-13.1.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmce5ce5f4d341a01b3c5c91f9a5b93a05-ol8_x86_64_appstream
rubygem-rbs-3.4.0-2.module+el8.10.0+90349+dd8a48dc.i686.rpm881c33e4ab858d6fcc97b6f1fbe80ba0-ol8_x86_64_appstream
rubygem-rbs-3.4.0-2.module+el8.10.0+90349+dd8a48dc.x86_64.rpm861e832710542abe9e34fc8709444ab2-ol8_x86_64_appstream
rubygem-rdoc-6.6.3.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm77119cd8a59133eb71c714f896536ae2-ol8_x86_64_appstream
rubygem-rexml-3.2.6-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm182f97f4bac44804e30525fa4ff20788-ol8_x86_64_appstream
rubygem-rss-0.3.0-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm7044a3dc21f16b9cfe42091714a7e866-ol8_x86_64_appstream
rubygem-test-unit-3.6.1-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmeab417dd0f89e214bb7f3df60630de6b-ol8_x86_64_appstream
rubygem-typeprof-0.21.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm3297bb2dbaee67fde3eca4e15b656275-ol8_x86_64_appstream
rubygems-3.5.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpmee73ad7245a56c7fb2cebab14c9fbd24-ol8_x86_64_appstream
rubygems-devel-3.5.9-2.module+el8.10.0+90349+dd8a48dc.noarch.rpm5e6832a70b5aebc949f589cc0e3113c9-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete