Buffer overread vulnerability in StringIO. (CVE-2024-27280)
RCE vulnerability with .rdoc_options in RDoc. (CVE-2024-27281)
Arbitrary memory address read vulnerability with Regex search.
(CVE-2024-27282)
- https://bugs.mageia.org/show_bug.cgi?id=33138
- https://www.ruby-lang.org/en/news/2024/04/23/ruby-3-1-5-released/
- https://www.cve.org/CVERecord?id=CVE-2024-27280
- https://www.cve.org/CVERecord?id=CVE-2024-27281
- https://www.cve.org/CVERecord?id=CVE-2024-27282
- 9/core/ruby-3.1.5-45.mga9
Get the latest Linux and open source security news straight to your inbox.