Publishing details

Changelog

ruby2.5 (2.5.1-1ubuntu1.16) bionic-security; urgency=medium

  * SECURITY UPDATE: ReDoS
    - debian/patches/CVE-2023-28755.patch: adds '+' once or more in specific
      places of the  RFC3986 regex in order to avoid the increase in execution
      time for parsing strings to URI objects in lib/uri/rfc3986_parser.rb.
    - CVE-2023-28755

 -- Leonidas Da Silva Barbosa <email address hidden>  Mon, 15 May 2023 08:41:43 -0300

Available diffs

Builds

Built packages

Package files