[ALAS-2013-231] Amazon Linux AMI 2012.09 - ALAS-2013-231: medium priority package update for rubygems

Severity Medium
Affected Packages 2
CVEs 1

Package updates are available for Amazon Linux AMI that fix the following vulnerabilities:
CVE-2013-4363:
1009720:
CVE-2013-4363 rubygems: version regex algorithmic complexity vulnerability, incomplete CVE-2013-4287 fix

ID
ALAS-2013-231
Severity
medium
URL
https://alas.aws.amazon.com/ALAS-2013-231.html
Published
2013-10-16T20:52:00
(11 years ago)
Modified
2014-09-16T21:41:00
(10 years ago)
Rights
Amazon Linux Security Team
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/amazonlinux/rubygems?arch=noarch&distro=amazonlinux-1 amazonlinux rubygems < 1.8.25-8.12.amzn1 amazonlinux-1 noarch
Affected pkg:rpm/amazonlinux/rubygems-devel?arch=noarch&distro=amazonlinux-1 amazonlinux rubygems-devel < 1.8.25-8.12.amzn1 amazonlinux-1 noarch
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...