[ELSA-2012-0070] ruby security update
Severity
Moderate
Affected Packages
9
CVEs
2
[1.8.5-22.1]
- Properly initialize the random number generator when forking new process
* ruby-1.8.7-CVE-2011-3009.patch
- Related: rhbz#768829
[1.8.5-21.1]
- Revert accidential move of tcl/tk libraries.
- Related: rhbz#768829
[1.8.5-20.1]
- Address CVE-2011-4815 "DoS (excessive CPU use) via hash meet-in-the-middle
attacks (oCERT-2011-003)"
* ruby-1.8.7-CVE-2011-4815.patch
- Resolves: rhbz#768829
Package | Affected Version |
---|---|
pkg:rpm/oraclelinux/ruby?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-tcltk?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-ri?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-rdoc?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-mode?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-libs?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-irb?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-docs?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
pkg:rpm/oraclelinux/ruby-devel?distro=oraclelinux-5.7 | < 1.8.5-22.el5_7.1 |
- ID
- ELSA-2012-0070
- Severity
- moderate
- URL
- https://linux.oracle.com/errata/ELSA-2012-0070.html
- Published
-
2012-01-30T00:00:00
(12 years ago) - Modified
-
2012-01-30T00:00:00
(12 years ago) - Rights
- Copyright 2012 Oracle, Inc.
- Other Advisories
Source | # ID | Name | URL |
---|---|---|---|
elsa | ELSA-2012-0070 | http://linux.oracle.com/errata/ELSA-2012-0070.html | |
CVE | CVE-2011-3009 | http://linux.oracle.com/cve/CVE-2011-3009 | |
CVE | CVE-2011-4815 | http://linux.oracle.com/cve/CVE-2011-4815 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/oraclelinux/ruby?distro=oraclelinux-5.7 | oraclelinux | ruby | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-tcltk?distro=oraclelinux-5.7 | oraclelinux | ruby-tcltk | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-ri?distro=oraclelinux-5.7 | oraclelinux | ruby-ri | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-rdoc?distro=oraclelinux-5.7 | oraclelinux | ruby-rdoc | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-mode?distro=oraclelinux-5.7 | oraclelinux | ruby-mode | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-libs?distro=oraclelinux-5.7 | oraclelinux | ruby-libs | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-irb?distro=oraclelinux-5.7 | oraclelinux | ruby-irb | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-docs?distro=oraclelinux-5.7 | oraclelinux | ruby-docs | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 | ||
Affected | pkg:rpm/oraclelinux/ruby-devel?distro=oraclelinux-5.7 | oraclelinux | ruby-devel | < 1.8.5-22.el5_7.1 | oraclelinux-5.7 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |