Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
60b2acf1 by Salvatore Bonaccorso at 2025-03-13T23:02:38+01:00
Add Debian bug reference for CVE-2025-27407/ruby-graphql
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -245,7 +245,7 @@ CVE-2025-27788 (JSON is a JSON implementation for Ruby.
Starting in version 2.10
NOTE: Introduced by:
https://github.com/ruby/json/commit/5e6cfcf7242a83e79fbc83cb30b3b89373e98b19
(v2.10.0)
NOTE: Fixed by:
https://github.com/ruby/json/commit/cf242d89a0523bacd5238a59c77b33411b8c3208
(v2.10.2)
CVE-2025-27407 (graphql-ruby is a Ruby implementation of GraphQL. Starting in
version ...)
- - ruby-graphql <unfixed>
+ - ruby-graphql <unfixed> (bug #1100442)
NOTE:
https://github.com/rmosolgo/graphql-ruby/security/advisories/GHSA-q92j-grw3-h492
NOTE:
https://github.com/rmosolgo/graphql-ruby/commit/2d2f4ed1f79472f8eed29c864b039649e1de238f
(v1.11.11)
NOTE:
https://github.com/rmosolgo/graphql-ruby/commit/28233b16c0eb9d0fb7808f4980e061dc7507c4cd
(v1.12.25)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/60b2acf110c407fcc11356789c20fad684778532
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/60b2acf110c407fcc11356789c20fad684778532
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits