[ALPINE:CVE-2019-8325] ruby vulnerability

Severity Medium
Affected Packages 25
Fixed Packages 25
CVEs 1

[From CVE-2019-8325] An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::CommandManager#run calls alert_error without escaping, escape sequence injection is possible. (There are many ways to cause an error.)

Package Affected Version
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.9 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.8 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.7 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.6 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.9 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.8 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.7 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.6 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.9 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.8 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.7 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.6 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.9 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.8 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.7 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.6 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=armv7&distro=alpine-3.9 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.9 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.8 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.7 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.6 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.9 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.8 < 2.5.5-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.7 < 2.4.6-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.6 < 2.4.6-r0
Package Fixed Version
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.9 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.8 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.7 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.6 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.9 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.8 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.7 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.6 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.9 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.8 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.7 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.6 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.9 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.8 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.7 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.6 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=armv7&distro=alpine-3.9 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.9 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.8 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.7 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.6 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.9 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.8 = 2.5.5-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.7 = 2.4.6-r0
pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.6 = 2.4.6-r0
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Fixed pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.9 alpine ruby = 2.5.5-r0 alpine-3.9 x86_64
Affected pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.9 alpine ruby < 2.5.5-r0 alpine-3.9 x86_64
Fixed pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.8 alpine ruby = 2.5.5-r0 alpine-3.8 x86_64
Affected pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.8 alpine ruby < 2.5.5-r0 alpine-3.8 x86_64
Fixed pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.7 alpine ruby = 2.4.6-r0 alpine-3.7 x86_64
Affected pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.7 alpine ruby < 2.4.6-r0 alpine-3.7 x86_64
Fixed pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.6 alpine ruby = 2.4.6-r0 alpine-3.6 x86_64
Affected pkg:apk/alpine/ruby?arch=x86_64&distro=alpine-3.6 alpine ruby < 2.4.6-r0 alpine-3.6 x86_64
Fixed pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.9 alpine ruby = 2.5.5-r0 alpine-3.9 x86
Affected pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.9 alpine ruby < 2.5.5-r0 alpine-3.9 x86
Fixed pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.8 alpine ruby = 2.5.5-r0 alpine-3.8 x86
Affected pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.8 alpine ruby < 2.5.5-r0 alpine-3.8 x86
Fixed pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.7 alpine ruby = 2.4.6-r0 alpine-3.7 x86
Affected pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.7 alpine ruby < 2.4.6-r0 alpine-3.7 x86
Fixed pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.6 alpine ruby = 2.4.6-r0 alpine-3.6 x86
Affected pkg:apk/alpine/ruby?arch=x86&distro=alpine-3.6 alpine ruby < 2.4.6-r0 alpine-3.6 x86
Fixed pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.9 alpine ruby = 2.5.5-r0 alpine-3.9 s390x
Affected pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.9 alpine ruby < 2.5.5-r0 alpine-3.9 s390x
Fixed pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.8 alpine ruby = 2.5.5-r0 alpine-3.8 s390x
Affected pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.8 alpine ruby < 2.5.5-r0 alpine-3.8 s390x
Fixed pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.7 alpine ruby = 2.4.6-r0 alpine-3.7 s390x
Affected pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.7 alpine ruby < 2.4.6-r0 alpine-3.7 s390x
Fixed pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.6 alpine ruby = 2.4.6-r0 alpine-3.6 s390x
Affected pkg:apk/alpine/ruby?arch=s390x&distro=alpine-3.6 alpine ruby < 2.4.6-r0 alpine-3.6 s390x
Fixed pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.9 alpine ruby = 2.5.5-r0 alpine-3.9 ppc64le
Affected pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.9 alpine ruby < 2.5.5-r0 alpine-3.9 ppc64le
Fixed pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.8 alpine ruby = 2.5.5-r0 alpine-3.8 ppc64le
Affected pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.8 alpine ruby < 2.5.5-r0 alpine-3.8 ppc64le
Fixed pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.7 alpine ruby = 2.4.6-r0 alpine-3.7 ppc64le
Affected pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.7 alpine ruby < 2.4.6-r0 alpine-3.7 ppc64le
Fixed pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.6 alpine ruby = 2.4.6-r0 alpine-3.6 ppc64le
Affected pkg:apk/alpine/ruby?arch=ppc64le&distro=alpine-3.6 alpine ruby < 2.4.6-r0 alpine-3.6 ppc64le
Fixed pkg:apk/alpine/ruby?arch=armv7&distro=alpine-3.9 alpine ruby = 2.5.5-r0 alpine-3.9 armv7
Affected pkg:apk/alpine/ruby?arch=armv7&distro=alpine-3.9 alpine ruby < 2.5.5-r0 alpine-3.9 armv7
Fixed pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.9 alpine ruby = 2.5.5-r0 alpine-3.9 armhf
Affected pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.9 alpine ruby < 2.5.5-r0 alpine-3.9 armhf
Fixed pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.8 alpine ruby = 2.5.5-r0 alpine-3.8 armhf
Affected pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.8 alpine ruby < 2.5.5-r0 alpine-3.8 armhf
Fixed pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.7 alpine ruby = 2.4.6-r0 alpine-3.7 armhf
Affected pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.7 alpine ruby < 2.4.6-r0 alpine-3.7 armhf
Fixed pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.6 alpine ruby = 2.4.6-r0 alpine-3.6 armhf
Affected pkg:apk/alpine/ruby?arch=armhf&distro=alpine-3.6 alpine ruby < 2.4.6-r0 alpine-3.6 armhf
Fixed pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.9 alpine ruby = 2.5.5-r0 alpine-3.9 aarch64
Affected pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.9 alpine ruby < 2.5.5-r0 alpine-3.9 aarch64
Fixed pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.8 alpine ruby = 2.5.5-r0 alpine-3.8 aarch64
Affected pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.8 alpine ruby < 2.5.5-r0 alpine-3.8 aarch64
Fixed pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.7 alpine ruby = 2.4.6-r0 alpine-3.7 aarch64
Affected pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.7 alpine ruby < 2.4.6-r0 alpine-3.7 aarch64
Fixed pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.6 alpine ruby = 2.4.6-r0 alpine-3.6 aarch64
Affected pkg:apk/alpine/ruby?arch=aarch64&distro=alpine-3.6 alpine ruby < 2.4.6-r0 alpine-3.6 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...