Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

Fedora 43 rubygem-json Critical Format String Injection CVE-2026-33210

fedora
Calendar Grey March 27, 2026
Dist Fedora Esm H88
Fedora 43 rubygem-json update fixes critical format string injection risk assigned CVE-2026-33210 for safety.
This new updates backports a fix for a format string injection vulnerability in JSON.parse, which is now assigned as CVE-2026-33210

Summary

This is a implementation of the JSON specification according

to RFC 4627 in Ruby.

You can think of it as a low fat alternative to XML,

if you want to store data to disk or transmit it over

a network rather than use a verbose markup language.

Update Information:

This new updates backports a fix for a format string injection vulnerability in JSON.parse, which is now assigned as CVE-2026-33210

Change Log

* Fri Mar 20 2026 Mamoru TASAKA - 2.13.2-2 - Backport upstream fix for format string injection vulnerability in JSON.parse (CVE-2026-33210)

References

Fedora Update Notification FEDORA-2026-8c07fcde49 2026-03-27 01:16:52.247657+00:00 Name : rubygem-json Product : Fedora 43 Version : 2.13.2 Release : 2.fc43 URL : https://github.com/ruby/json Summary : A JSON implementation in Ruby Description : This is a implementation of the JSON specification according to RFC 4627 in Ruby. You can think of it as a low fat alternative to XML, if you want to store data to disk or transmit it over a network rather than use a verbose markup language.

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-8c07fcde49' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: rubygem-json
Product: Fedora 43
Version: 2.13.2
Release: 2.fc43
Summary: A JSON implementation in Ruby

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here