diff options
author | Yasuhiro Kimura <yasu@FreeBSD.org> | 2021-11-24 14:48:11 +0000 |
---|---|---|
committer | Yasuhiro Kimura <yasu@FreeBSD.org> | 2021-11-24 15:18:56 +0000 |
commit | 1ea17b42aea15e9d2f2a690de22b434e88d9a48a (patch) | |
tree | 92b7f6400068f9e288511e6bc4d0fc77aba01142 | |
parent | d6efa88d0b02327b119dac802b5b770ad42764be (diff) | |
download | ports-1ea17b42aea15e9d2f2a690de22b434e88d9a48a.tar.gz ports-1ea17b42aea15e9d2f2a690de22b434e88d9a48a.zip |
security/vuxml: Update affecting packages of 6916ea94-4628-11ec-bbe2-0800270512f4
This vulnerability also affects ruby ports.
-rw-r--r-- | security/vuxml/vuln-2021.xml | 19 |
1 files changed, 19 insertions, 0 deletions
diff --git a/security/vuxml/vuln-2021.xml b/security/vuxml/vuln-2021.xml index 74463ed364ca..759bb3d203f1 100644 --- a/security/vuxml/vuln-2021.xml +++ b/security/vuxml/vuln-2021.xml @@ -167,6 +167,24 @@ <topic>rubygem-date -- Regular Expression Denial of Service Vunlerability of Date Parsing Methods</topic> <affects> <package> + <name>ruby</name> + <range><ge>2.6.0,1</ge><lt>2.6.9,1</lt></range> + <range><ge>2.7.0,1</ge><lt>2.7.5,1</lt></range> + <range><ge>3.0.0,1</ge><lt>3.0.3,1</lt></range> + </package> + <package> + <name>ruby26</name> + <range><ge>2.6.0,1</ge><lt>2.6.9,1</lt></range> + </package> + <package> + <name>ruby27</name> + <range><ge>2.7.0,1</ge><lt>2.7.5,1</lt></range> + </package> + <package> + <name>ruby30</name> + <range><ge>3.0.0,1</ge><lt>3.0.3,1</lt></range> + </package> + <package> <name>rubygem-date</name> <range><lt>3.2.1</lt></range> </package> @@ -192,6 +210,7 @@ <dates> <discovery>2021-11-15</discovery> <entry>2021-11-15</entry> + <modified>2021-11-24</modified> </dates> </vuln> |