USN-7256-1 fixed vulnerabilities in Ruby. The update introduced a minor regression. This update fixes the problem.

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

USN-7256-1 fixed vulnerabilities in Ruby. The update introduced a minor regression. This update fixes the problem.

Post by Shane1145 »

It was discovered that Ruby incorrectly handled parsing of an XML document
that has specific XML characters in an attribute value using REXML gem. An
attacker could use this issue to cause Ruby to crash, resulting in a
denial of service.


https://ubuntu.com/security/notices/USN-7256-2
Post Reply