Commit Graph

4 Commits

Author SHA1 Message Date
Jarek Prokop
b6f532e4a0 Upgrade to Ruby 3.3.8.
Fix Net::IMAP vulnerable to possible DoS by memory exhaustion. (CVE-2025-25186)
Fix Denial of Service in CGI::Cookie.parse. (CVE-2025-27219)
Fix userinfo leakage in URI#join, URI#merge and URI#+. (CVE-2025-27221)

Resolves: RHEL-68632
2025-04-14 16:35:07 +02:00
Jarek Prokop
1ccfb03ab8 Upgrade to Ruby 3.3.5.
Fix DoS vulnerability in rexml.
(CVE-2024-39908)
(CVE-2024-41946)
(CVE-2024-43398)

Fix REXML DoS when parsing an XML having many specific characters such as
whitespace character, >] and ]>.
(CVE-2024-41123)

Upgrade by merging Fedora changes up to commit:
b7e197fb88

Exclude:
- Generate RPM dependencies with RPM 4.20 API
  6bed1e3bd5
We don't have new enough RPM.

Resolves: RHEL-55409
Resolves: RHEL-57049
Resolves: RHEL-52783
Resolves: RHEL-57054
Resolves: RHEL-57069
2024-09-05 09:49:16 +02:00
Jarek Prokop
4f8991cc06 Upgrade to Ruby 3.3.0.
Imported from Fedora @ 3008410

Resolves: RHEL-17090
2024-01-29 16:23:30 +01:00
James Antill
26e228c90c Import rpm: 9f96feb53d9feecfcd393c1874263a48edf03dea 2022-08-08 14:06:45 -04:00