Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Fedora 27: Rubygem-Ox Security Update for CVE-2017-15928 Critical SegFault

fedora
Calendar Grey November 15, 2017
Dist Fedora Esm H88
A security patch for the rubygem-ox package in Fedora 27 tackles segmentation fault problems while also bringing enhancements.
Update to 2.8.2 - new features and fixes, security fix for CVE-2017-15928

Summary

A fast XML parser and object serializer that uses only standard C lib.

Optimized XML (Ox), as the name implies was written to provide speed optimized

XML handling. It was designed to be an alternative to Nokogiri and other Ruby

XML parsers for generic XML parsing and as an alternative to Marshal for

Object serialization.

Update to 2.8.2 - new features and fixes, security fix for CVE-2017-15928

[ 1 ] Bug #1509206 - CVE-2017-15928 rubygem-ox: Segmentation fault in the parse_obj

https://bugzilla.redhat.com/show_bug.cgi?id=1509206

su -c 'dnf upgrade rubygem-ox' at the command line.

For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 27
Version: 2.8.2
Release: 1.fc27
Summary: Fast XML parser and object serializer

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here