[ELSA-2012-0070] ruby security update

Severity Moderate
Affected Packages 9
CVEs 2

[1.8.5-22.1]
- Properly initialize the random number generator when forking new process
* ruby-1.8.7-CVE-2011-3009.patch
- Related: rhbz#768829

[1.8.5-21.1]
- Revert accidential move of tcl/tk libraries.
- Related: rhbz#768829

[1.8.5-20.1]
- Address CVE-2011-4815 "DoS (excessive CPU use) via hash meet-in-the-middle
attacks (oCERT-2011-003)"
* ruby-1.8.7-CVE-2011-4815.patch
- Resolves: rhbz#768829

ID
ELSA-2012-0070
Severity
moderate
URL
https://linux.oracle.com/errata/ELSA-2012-0070.html
Published
2012-01-30T00:00:00
(12 years ago)
Modified
2012-01-30T00:00:00
(12 years ago)
Rights
Copyright 2012 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/ruby?distro=oraclelinux-5.7 oraclelinux ruby < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-tcltk?distro=oraclelinux-5.7 oraclelinux ruby-tcltk < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-ri?distro=oraclelinux-5.7 oraclelinux ruby-ri < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-rdoc?distro=oraclelinux-5.7 oraclelinux ruby-rdoc < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-mode?distro=oraclelinux-5.7 oraclelinux ruby-mode < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-libs?distro=oraclelinux-5.7 oraclelinux ruby-libs < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-irb?distro=oraclelinux-5.7 oraclelinux ruby-irb < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-docs?distro=oraclelinux-5.7 oraclelinux ruby-docs < 1.8.5-22.el5_7.1 oraclelinux-5.7
Affected pkg:rpm/oraclelinux/ruby-devel?distro=oraclelinux-5.7 oraclelinux ruby-devel < 1.8.5-22.el5_7.1 oraclelinux-5.7
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...