Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Debian: DSA-5881-1: rails Security Advisory Updates

debian
Calendar Grey March 17, 2025
Debian Logo
Multiple issues in the Rails framework lead to XSS, information leaks, and service disruptions. Update recommended.
Multiple security issues were discovered in the Rails web framework which could result cross-site scripting, information disclosure, denial of service or bypass of content security...

Summary

Multiple security issues were discovered in the Rails web framework
which could result cross-site scripting, information disclosure, denial
of service or bypass of content security policies.

For the stable distribution (bookworm), these problems have been fixed in
version 2:6.1.7.10+dfsg-1~deb12u1.

We recommend that you upgrade your rails packages.

For the detailed security status of rails please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/rails

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
important
Lowest
Low
Medium
High
Critical

Package: rails
CVE ID: CVE-2023-28362 CVE-2023-38037 CVE-2024-26144 CVE-2024-28103

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here