[FEDORA-2022-82a9edac27] Fedora 34: ruby

Severity Critical
Affected Packages 1
CVEs 5
Source # ID Name URL
Bugzilla 2025104 Bug #2025104 - CVE-2021-41817 ruby: Regular expression denial of service vulnerability of Date parsing methods https://bugzilla.redhat.com/show_bug.cgi?id=2025104
Bugzilla 2075685 Bug #2075685 - CVE-2022-28738 Ruby: Double free in Regexp compilation https://bugzilla.redhat.com/show_bug.cgi?id=2075685
Bugzilla 2026757 Bug #2026757 - CVE-2021-41819 ruby: Cookie prefix spoofing in CGI::Cookie.parse https://bugzilla.redhat.com/show_bug.cgi?id=2026757
Bugzilla 2075687 Bug #2075687 - CVE-2022-28739 Ruby: Buffer overrun in String-to-Float conversion https://bugzilla.redhat.com/show_bug.cgi?id=2075687
Bugzilla 2026752 Bug #2026752 - CVE-2021-41816 ruby: buffer overflow in CGI.escape_html https://bugzilla.redhat.com/show_bug.cgi?id=2026752
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/ruby?distro=fedora-34 fedora ruby < 3.0.4.153.fc34 fedora-34
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...