Vulnerability Database
Blog
FAQ
Docs
RHSA-2016:0454
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2016:0454
Import Source
https://security.access.redhat.com/data/osv/RHSA-2016:0454.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2016:0454
Related
CVE-2015-7576
CVE-2015-7577
CVE-2015-7581
CVE-2016-0751
CVE-2016-0752
CVE-2016-2097
CVE-2016-2098
Published
2024-09-13T12:26:58Z
Modified
2024-09-13T12:26:58Z
Summary
Red Hat Security Advisory: ror40 security update
Details
References
https://access.redhat.com/errata/RHSA-2016:0454
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=1301933
https://bugzilla.redhat.com/show_bug.cgi?id=1301946
https://bugzilla.redhat.com/show_bug.cgi?id=1301957
https://bugzilla.redhat.com/show_bug.cgi?id=1301963
https://bugzilla.redhat.com/show_bug.cgi?id=1301981
https://bugzilla.redhat.com/show_bug.cgi?id=1310043
https://bugzilla.redhat.com/show_bug.cgi?id=1310054
https://access.redhat.com/security/data/csaf/v2/advisories/2016/rhsa-2016_0454.json
https://access.redhat.com/security/cve/CVE-2015-7576
https://www.cve.org/CVERecord?id=CVE-2015-7576
https://nvd.nist.gov/vuln/detail/CVE-2015-7576
http://weblog.rubyonrails.org/2016/1/25/Rails-5-0-0-beta1-1-4-2-5-1-4-1-14-1-3-2-22-1-and-rails-html-sanitizer-1-0-3-have-been-released/
https://groups.google.com/forum/#!msg/rubyonrails-security/ANv0HDHEC3k/mt7wNGxbFQAJ
https://access.redhat.com/security/cve/CVE-2015-7577
https://www.cve.org/CVERecord?id=CVE-2015-7577
https://nvd.nist.gov/vuln/detail/CVE-2015-7577
https://groups.google.com/forum/#!msg/rubyonrails-security/cawsWcQ6c8g/tegZtYdbFQAJ
https://access.redhat.com/security/cve/CVE-2015-7581
https://www.cve.org/CVERecord?id=CVE-2015-7581
https://nvd.nist.gov/vuln/detail/CVE-2015-7581
https://groups.google.com/forum/#!msg/rubyonrails-security/dthJ5wL69JE/YzPnFelbFQAJ
https://access.redhat.com/security/cve/CVE-2016-0751
https://www.cve.org/CVERecord?id=CVE-2016-0751
https://nvd.nist.gov/vuln/detail/CVE-2016-0751
https://groups.google.com/forum/#!msg/rubyonrails-security/9oLY_FCzvoc/w9oI9XxbFQAJ
https://access.redhat.com/security/cve/CVE-2016-0752
https://www.cve.org/CVERecord?id=CVE-2016-0752
https://nvd.nist.gov/vuln/detail/CVE-2016-0752
https://groups.google.com/forum/#!msg/rubyonrails-security/335P1DcLG00/OfB9_LhbFQAJ
https://nvisium.com/blog/2016/01/26/rails-dynamic-render-to-rce-cve-2016-0752/
https://www.cisa.gov/known-exploited-vulnerabilities-catalog
https://access.redhat.com/security/cve/CVE-2016-2097
https://www.cve.org/CVERecord?id=CVE-2016-2097
https://nvd.nist.gov/vuln/detail/CVE-2016-2097
https://groups.google.com/forum/#!msg/rubyonrails-security/ddY6HgqB2z4/we0RasMZIAAJ
https://access.redhat.com/security/cve/CVE-2016-2098
https://www.cve.org/CVERecord?id=CVE-2016-2098
https://nvd.nist.gov/vuln/detail/CVE-2016-2098
https://groups.google.com/forum/#!msg/rubyonrails-security/ly-IH-fxr_Q/WLoOhcMZIAAJ
Affected packages
Red Hat:rhel_software_collections:2::el6
/
ror40-rubygem-actionpack
Package
Name
ror40-rubygem-actionpack
Purl
pkg:rpm/redhat/ror40-rubygem-actionpack
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-7.el6
Red Hat:rhel_software_collections:2::el6
/
ror40-rubygem-actionpack-doc
Package
Name
ror40-rubygem-actionpack-doc
Purl
pkg:rpm/redhat/ror40-rubygem-actionpack-doc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-7.el6
Red Hat:rhel_software_collections:2::el6
/
ror40-rubygem-activerecord
Package
Name
ror40-rubygem-activerecord
Purl
pkg:rpm/redhat/ror40-rubygem-activerecord
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-6.el6
Red Hat:rhel_software_collections:2::el6
/
ror40-rubygem-activerecord-doc
Package
Name
ror40-rubygem-activerecord-doc
Purl
pkg:rpm/redhat/ror40-rubygem-activerecord-doc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-6.el6
Red Hat:rhel_software_collections:2::el6
/
ror40-rubygem-activesupport
Package
Name
ror40-rubygem-activesupport
Purl
pkg:rpm/redhat/ror40-rubygem-activesupport
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-4.el6
Red Hat:rhel_software_collections:2::el7
/
ror40-rubygem-actionpack
Package
Name
ror40-rubygem-actionpack
Purl
pkg:rpm/redhat/ror40-rubygem-actionpack
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-7.el7
Red Hat:rhel_software_collections:2::el7
/
ror40-rubygem-actionpack-doc
Package
Name
ror40-rubygem-actionpack-doc
Purl
pkg:rpm/redhat/ror40-rubygem-actionpack-doc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-7.el7
Red Hat:rhel_software_collections:2::el7
/
ror40-rubygem-activerecord
Package
Name
ror40-rubygem-activerecord
Purl
pkg:rpm/redhat/ror40-rubygem-activerecord
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-6.el7
Red Hat:rhel_software_collections:2::el7
/
ror40-rubygem-activerecord-doc
Package
Name
ror40-rubygem-activerecord-doc
Purl
pkg:rpm/redhat/ror40-rubygem-activerecord-doc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-6.el7
Red Hat:rhel_software_collections:2::el7
/
ror40-rubygem-activesupport
Package
Name
ror40-rubygem-activesupport
Purl
pkg:rpm/redhat/ror40-rubygem-activesupport
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.0.2-4.el7
RHSA-2016:0454 - OSV