Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
eca92b24 by Moritz Muehlenhoff at 2021-07-08T09:54:16+02:00
add ruby commit references

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9377,6 +9377,7 @@ CVE-2021-32066 [A StartTLS stripping vulnerability in 
Net::IMAP]
        - ruby2.5 <removed>
        - ruby2.3 <removed>
        NOTE: 
https://www.ruby-lang.org/en/news/2021/07/07/starttls-stripping-in-net-imap/
+       NOTE: 
https://github.com/ruby/ruby/commit/a21a3b7d23704a01d34bd79d09dc37897e00922a 
(2.7)
        TODO: check jruby
 CVE-2021-32065
        RESERVED
@@ -10260,6 +10261,7 @@ CVE-2021-31810 [Trusting FTP PASV responses 
vulnerability in Net::FTP]
        - ruby2.5 <removed>
        - ruby2.3 <removed>
        NOTE: 
https://www.ruby-lang.org/en/news/2021/07/07/trusting-pasv-responses-in-net-ftp/
+       NOTE: 
https://github.com/ruby/ruby/commit/3ca1399150ed4eacfd2fe1ee251b966f8d1ee469 
(2.7)
        TODO: check jruby
 CVE-2021-31809
        RESERVED
@@ -10318,7 +10320,8 @@ CVE-2021-31799 [A command injection vulnerability in 
RDoc]
        - ruby2.5 <removed>
        - ruby2.3 <removed>
        NOTE: 
https://www.ruby-lang.org/en/news/2021/05/02/os-command-injection-in-rdoc/
-       NOTE: 
https://github.com/ruby/rdoc/commit/a7f5d6ab88632b3b482fe10611382ff73d14eed7
+       NOTE: 
https://github.com/ruby/rdoc/commit/b1c73f239fe9af97de837331849f55d67c27561e 
(master)
+       NOTE: 
https://github.com/ruby/ruby/commit/483f303d02e768b69e476e0b9be4ab2f26389522 
(2.7)
 CVE-2021-31798
        RESERVED
 CVE-2021-31797



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eca92b2441f19f9f8c5015a7b23752fae2c172da

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eca92b2441f19f9f8c5015a7b23752fae2c172da
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to