Vulnerability Database
Blog
FAQ
Docs
MGASA-2022-0102
See a problem?
Please try reporting it
to the source
first.
Source
https://advisories.mageia.org/MGASA-2022-0102.html
Import Source
https://advisories.mageia.org/MGASA-2022-0102.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2022-0102
Related
CVE-2021-43809
Published
2022-03-14T16:51:52Z
Modified
2022-03-14T16:09:06Z
Summary
Updated ruby packages fix security vulnerability
Details
Command injection in ruby bundler. (CVE-2021-43809)
References
https://advisories.mageia.org/MGASA-2022-0102.html
https://bugs.mageia.org/show_bug.cgi?id=30162
https://blog.sonarsource.com/securing-developer-tools-package-managers
Credits
Mageia - COORDINATOR
https://wiki.mageia.org/en/Packages_Security_Team
Affected packages
Mageia:8
/
ruby
Package
Name
ruby
Purl
pkg:rpm/mageia/ruby?distro=mageia-8
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2.7.5-33.3.mga8
Ecosystem specific
{ "section": "core" }
MGASA-2022-0102 - OSV