Ubuntu Security Update USN-6055-2: Ruby regression

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,934
Reaction score
80
Credits
-1,257
USN-6055-1 fixed a vulnerability in Ruby. Unfortunately it introduced a regression. This update reverts the patches applied to CVE-2023-28755 in order to fix the regression pending further investigation. We apologize for the inconvenience. Original advisory details: It was discovered that Ruby incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause a denial of service. (CVE-2023-28755)

Continue reading...
 


Follow Linux.org

Staff online

Members online


Latest posts

Top