Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-3020

Опубликовано: 06 авг. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-3020: ruby:2.7 security update (IMPORTANT)

ruby [2.7.4-137]

  • Upgrade to Ruby 2.7.4.
  • Fix command injection vulnerability in RDoc. Resolves: rhbz#1986768
  • Fix FTP PASV command response can cause Net::FTP to connect to arbitrary host. Resolves: rhbz#1986812
  • Fix StartTLS stripping vulnerability in Net::IMAP. Resolves: rhbz#1986813
  • Upgrade to Bundler 2.2.24. Resolves: CVE-2020-36327

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module ruby:2.7 is enabled

ruby

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-default-gems

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-devel

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-doc

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-libs

2.7.4-137.module+el8.4.0+20269+fcbf533e

rubygem-abrt

0.4.0-1.module+el8.3.0+7760+537395ec

rubygem-abrt-doc

0.4.0-1.module+el8.3.0+7760+537395ec

rubygem-bigdecimal

2.0.0-137.module+el8.4.0+20269+fcbf533e

rubygem-bson

4.8.1-1.module+el8.4.0+20239+cbf59dc8

rubygem-bson-doc

4.8.1-1.module+el8.4.0+20239+cbf59dc8

rubygem-bundler

2.2.24-137.module+el8.4.0+20269+fcbf533e

rubygem-io-console

0.5.6-137.module+el8.4.0+20269+fcbf533e

rubygem-irb

1.2.6-137.module+el8.4.0+20269+fcbf533e

rubygem-json

2.3.0-137.module+el8.4.0+20269+fcbf533e

rubygem-minitest

5.13.0-137.module+el8.4.0+20269+fcbf533e

rubygem-mongo

2.11.3-1.module+el8.3.0+7760+537395ec

rubygem-mongo-doc

2.11.3-1.module+el8.3.0+7760+537395ec

rubygem-mysql2

0.5.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-mysql2-doc

0.5.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-net-telnet

0.2.0-137.module+el8.4.0+20269+fcbf533e

rubygem-openssl

2.1.2-137.module+el8.4.0+20269+fcbf533e

rubygem-pg

1.2.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-pg-doc

1.2.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-power_assert

1.1.7-137.module+el8.4.0+20269+fcbf533e

rubygem-psych

3.1.0-137.module+el8.4.0+20269+fcbf533e

rubygem-rake

13.0.1-137.module+el8.4.0+20269+fcbf533e

rubygem-rdoc

6.2.1.1-137.module+el8.4.0+20269+fcbf533e

rubygem-test-unit

3.3.4-137.module+el8.4.0+20269+fcbf533e

rubygem-xmlrpc

0.3.0-137.module+el8.4.0+20269+fcbf533e

rubygems

3.1.6-137.module+el8.4.0+20269+fcbf533e

rubygems-devel

3.1.6-137.module+el8.4.0+20269+fcbf533e

Oracle Linux x86_64

Module ruby:2.7 is enabled

ruby

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-default-gems

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-devel

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-doc

2.7.4-137.module+el8.4.0+20269+fcbf533e

ruby-libs

2.7.4-137.module+el8.4.0+20269+fcbf533e

rubygem-abrt

0.4.0-1.module+el8.3.0+7760+537395ec

rubygem-abrt-doc

0.4.0-1.module+el8.3.0+7760+537395ec

rubygem-bigdecimal

2.0.0-137.module+el8.4.0+20269+fcbf533e

rubygem-bson

4.8.1-1.module+el8.4.0+20239+cbf59dc8

rubygem-bson-doc

4.8.1-1.module+el8.4.0+20239+cbf59dc8

rubygem-bundler

2.2.24-137.module+el8.4.0+20269+fcbf533e

rubygem-io-console

0.5.6-137.module+el8.4.0+20269+fcbf533e

rubygem-irb

1.2.6-137.module+el8.4.0+20269+fcbf533e

rubygem-json

2.3.0-137.module+el8.4.0+20269+fcbf533e

rubygem-minitest

5.13.0-137.module+el8.4.0+20269+fcbf533e

rubygem-mongo

2.11.3-1.module+el8.3.0+7760+537395ec

rubygem-mongo-doc

2.11.3-1.module+el8.3.0+7760+537395ec

rubygem-mysql2

0.5.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-mysql2-doc

0.5.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-net-telnet

0.2.0-137.module+el8.4.0+20269+fcbf533e

rubygem-openssl

2.1.2-137.module+el8.4.0+20269+fcbf533e

rubygem-pg

1.2.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-pg-doc

1.2.3-1.module+el8.4.0+20239+cbf59dc8

rubygem-power_assert

1.1.7-137.module+el8.4.0+20269+fcbf533e

rubygem-psych

3.1.0-137.module+el8.4.0+20269+fcbf533e

rubygem-rake

13.0.1-137.module+el8.4.0+20269+fcbf533e

rubygem-rdoc

6.2.1.1-137.module+el8.4.0+20269+fcbf533e

rubygem-test-unit

3.3.4-137.module+el8.4.0+20269+fcbf533e

rubygem-xmlrpc

0.3.0-137.module+el8.4.0+20269+fcbf533e

rubygems

3.1.6-137.module+el8.4.0+20269+fcbf533e

rubygems-devel

3.1.6-137.module+el8.4.0+20269+fcbf533e

Связанные уязвимости

rocky
почти 4 года назад

Important: ruby:2.7 security update

rocky
больше 3 лет назад

Important: ruby:2.6 security update

oracle-oval
больше 3 лет назад

ELSA-2022-0543: ruby:2.6 security update (IMPORTANT)

suse-cvrf
больше 3 лет назад

Security update for ruby2.5

suse-cvrf
больше 3 лет назад

Security update for ruby2.5