[FEDORA-2017-81cf93b7c2] Fedora 27: rubygems

Severity Critical
Affected Packages 1
CVEs 4
Source # ID Name URL
Bugzilla 1487590 Bug #1487590 - CVE-2017-0899 rubygems: Escape sequence in the "summary" field of gemspec https://bugzilla.redhat.com/show_bug.cgi?id=1487590
Bugzilla 1487587 Bug #1487587 - CVE-2017-0901 rubygems: Arbitrary file overwrite due to incorrect validation of specification name https://bugzilla.redhat.com/show_bug.cgi?id=1487587
Bugzilla 1487589 Bug #1487589 - CVE-2017-0902 rubygems: DNS hijacking vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=1487589
Bugzilla 1487588 Bug #1487588 - CVE-2017-0900 rubygems: No size limit in summary length of gem spec https://bugzilla.redhat.com/show_bug.cgi?id=1487588
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/rubygems?distro=fedora-27 fedora rubygems < 2.6.13.100.fc27 fedora-27
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...