It was discovered that RubyGems incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause RubyGems to consume resources, leading to a regular expression denial of service (ReDoS).
{ "availability": "No subscription required", "binaries": [ { "binary_name": "bundler", "binary_version": "2.3.5-2ubuntu1.2" }, { "binary_name": "ruby-bundler", "binary_version": "2.3.5-2ubuntu1.2" }, { "binary_name": "ruby-rubygems", "binary_version": "3.3.5-2ubuntu1.2" } ] }