Univention Bugzilla – Bug 51707
ruby2.3: Multiple issues (4.4)
Last modified: 2020-07-29 16:50:40 CEST
New Debian ruby2.3 2.3.3-1+deb9u8 fixes: This update addresses the following issue: * Unsafe Object Creation Vulnerability in JSON (CVE-2020-10663)
--- mirror/ftp/4.4/unmaintained/4.4-4/source/ruby2.3_2.3.3-1+deb9u7.dsc +++ apt/ucs_4.4-0-errata4.4-5/source/ruby2.3_2.3.3-1+deb9u8.dsc @@ -1,3 +1,9 @@ +2.3.3-1+deb9u8 [Fri, 05 Jun 2020 14:25:50 +0530] Utkarsh Gupta <utkarsh@debian.org>: + + * Non-maintainer upload. + * Add patch to fix unsafe object creation vulnerability. + (Fixes: CVE-2020-10663) + 2.3.3-1+deb9u7 [Sun, 15 Dec 2019 17:28:25 +0100] Salvatore Bonaccorso <carnil@debian.org>: * Non-maintainer upload by the Security Team. <http://10.200.17.11/4.4-5/#1230547813017423843>
OK: yaml OK: announce_errata OK: patch OK: piuparts [4.4-5] 025815320d Bug #51707: ruby2.3 2.3.3-1+deb9u8 doc/errata/staging/ruby2.3.yaml | 12 ++++++++++++ 1 file changed, 12 insertions(+)
<https://errata.software-univention.de/#/?erratum=4.4x674>