Uploaded image for project: 'Funtoo Linux'
  1. Funtoo Linux
  2. FL-9686

[ruby-kit] dev-lang/ruby: Buffer overrun in String-to-Float conversion (CVE-2022-28739)

    • Icon: Security Vulnerability Security Vulnerability
    • Resolution: Fixed
    • Icon: Normal Normal
    • None
    • None

      Ruby ebuild currently in Funtoo 1.4 and Funtoo Next are vulnerable to a recent CVE:

      From the official Ruby News Post:

      Please update Ruby to 2.6.10, 2.7.6, 3.0.4, or 3.1.2.
      Affected versions

          ruby 2.6.9 or prior
          ruby 2.7.5 or prior
          ruby 3.0.3 or prior
          ruby 3.1.1 or prior

            siris siris
            siris siris
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: