aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorYasuhiro Kimura <yasu@FreeBSD.org>2021-11-24 14:48:11 +0000
committerYasuhiro Kimura <yasu@FreeBSD.org>2021-11-24 15:18:56 +0000
commit1ea17b42aea15e9d2f2a690de22b434e88d9a48a (patch)
tree92b7f6400068f9e288511e6bc4d0fc77aba01142
parentd6efa88d0b02327b119dac802b5b770ad42764be (diff)
downloadports-1ea17b42aea15e9d2f2a690de22b434e88d9a48a.tar.gz
ports-1ea17b42aea15e9d2f2a690de22b434e88d9a48a.zip
security/vuxml: Update affecting packages of 6916ea94-4628-11ec-bbe2-0800270512f4
This vulnerability also affects ruby ports.
-rw-r--r--security/vuxml/vuln-2021.xml19
1 files changed, 19 insertions, 0 deletions
diff --git a/security/vuxml/vuln-2021.xml b/security/vuxml/vuln-2021.xml
index 74463ed364ca..759bb3d203f1 100644
--- a/security/vuxml/vuln-2021.xml
+++ b/security/vuxml/vuln-2021.xml
@@ -167,6 +167,24 @@
<topic>rubygem-date -- Regular Expression Denial of Service Vunlerability of Date Parsing Methods</topic>
<affects>
<package>
+ <name>ruby</name>
+ <range><ge>2.6.0,1</ge><lt>2.6.9,1</lt></range>
+ <range><ge>2.7.0,1</ge><lt>2.7.5,1</lt></range>
+ <range><ge>3.0.0,1</ge><lt>3.0.3,1</lt></range>
+ </package>
+ <package>
+ <name>ruby26</name>
+ <range><ge>2.6.0,1</ge><lt>2.6.9,1</lt></range>
+ </package>
+ <package>
+ <name>ruby27</name>
+ <range><ge>2.7.0,1</ge><lt>2.7.5,1</lt></range>
+ </package>
+ <package>
+ <name>ruby30</name>
+ <range><ge>3.0.0,1</ge><lt>3.0.3,1</lt></range>
+ </package>
+ <package>
<name>rubygem-date</name>
<range><lt>3.2.1</lt></range>
</package>
@@ -192,6 +210,7 @@
<dates>
<discovery>2021-11-15</discovery>
<entry>2021-11-15</entry>
+ <modified>2021-11-24</modified>
</dates>
</vuln>