FEDORA-2017-20214ad330 created by vondruch 4 years ago for Fedora 26
stable

Update to RubyGems 2.6.13.

How to install

sudo dnf upgrade --advisory=FEDORA-2017-20214ad330

This update has been submitted for testing by vondruch.

4 years ago

vondruch edited this update.

4 years ago

This update has been pushed to testing.

4 years ago
User Icon jdoss commented & provided feedback 4 years ago
karma

Tested on development envs without issue.

BZ#1487587 CVE-2017-0901 rubygems: Arbitrary file overwrite due to incorrect validation of specification name
BZ#1487588 CVE-2017-0900 rubygems: No size limit in summary length of gem spec
BZ#1487589 CVE-2017-0902 rubygems: DNS hijacking vulnerability
BZ#1487590 CVE-2017-0899 rubygems: Escape sequence in the "summary" field of gemspec
BZ#1487591 CVE-2017-0899 CVE-2017-0900 CVE-2017-0901 CVE-2017-0902 rubygems: various flaws [fedora-all]
User Icon cserpentis commented & provided feedback 4 years ago
karma

works for me

karma

This update has been submitted for stable by bodhi.

4 years ago
karma

This update has been pushed to stable.

4 years ago

Please login to add feedback.

Metadata
Type
security
Karma
3
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
disabled
Dates
submitted
4 years ago
in testing
4 years ago
in stable
4 years ago
modified
4 years ago
BZ#1487587 CVE-2017-0901 rubygems: Arbitrary file overwrite due to incorrect validation of specification name
0
1
BZ#1487588 CVE-2017-0900 rubygems: No size limit in summary length of gem spec
0
1
BZ#1487589 CVE-2017-0902 rubygems: DNS hijacking vulnerability
0
1
BZ#1487590 CVE-2017-0899 rubygems: Escape sequence in the "summary" field of gemspec
0
1
BZ#1487591 CVE-2017-0899 CVE-2017-0900 CVE-2017-0901 CVE-2017-0902 rubygems: various flaws [fedora-all]
0
1

Automated Test Results