USN-6219-1
Dashboard / Vulnerabilities / USN-6219-1
USN-6219-1
Summary: ruby2.3, ruby2.5, ruby2.7, ruby3.0, ruby3.1 vulnerabilities
Details: It was discovered that Ruby incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 20.10 and Ubuntu 20.04 LTS. (CVE-2023-28755) It was discovered that Ruby incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause a denial of service. This issue exists because of an incomplete fix for CVE-2023-28755. (CVE-2023-36617)
References: https://ubuntu.com/security/notices/USN-6219-1, https://ubuntu.com/security/CVE-2023-28755, https://ubuntu.com/security/CVE-2023-36617
Affected packages
Package
Name: ruby2.3
Purl: pkg:deb/ubuntu/ruby2.3?arch=source&distro=esm-infra%2Fxenial
Affected ranges
Type: ECOSYSTEM
Events:
