Alerts This Week
Warning Icon 1 1,154
Alerts This Week
Warning Icon 1 1,154

Oracle Linux 9 ELSA-2025-4487 moderate: ruby Denial of Service fixes

oracle
Calendar Grey May 13, 2025
Oracle Linux Logo Esm H88
Urgent security patch for Oracle Linux 9 for Ruby fixes Denial of Service and ReDoS flaws, take action promptly
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[3.0.7-165] - Fix Denial of Service in CGI::Cookie.parse. (CVE-2025-27219) Resolves: RHEL-86104 - Fix ReDoS in CGI::Util#escapeElement. (CVE-2025-27220) Resolves: RHEL-86130 [3.0.7-164] - Undefine GC compaction methods on ppc64le. Resolves: RHEL-83136 - Fix printing warnings when using IRB from a script. Resolves: RHEL-83044

SRPMs

http://oss.oracle.com/ol9/SRPMS-updates//ruby-3.0.7-165.el9_5.src.rpm

x86_64

ruby-3.0.7-165.el9_5.i686.rpm ruby-3.0.7-165.el9_5.x86_64.rpm ruby-default-gems-3.0.7-165.el9_5.noarch.rpm ruby-devel-3.0.7-165.el9_5.i686.rpm ruby-devel-3.0.7-165.el9_5.x86_64.rpm ruby-libs-3.0.7-165.el9_5.i686.rpm ruby-libs-3.0.7-165.el9_5.x86_64.rpm rubygem-bigdecimal-3.0.0-165.el9_5.x86_64.rpm rubygem-bundler-2.2.33-165.el9_5.noarch.rpm rubygem-io-console-0.5.7-165.el9_5.x86_64.rpm rubygem-irb-1.3.5-165.el9_5.noarch.rpm rubygem-json-2.5.1-165.el9_5.x86_64.rpm rubygem-minitest-5.14.2-165.el9_5.noarch.rpm rubygem-power_assert-1.2.1-165.el9_5.noarch.rpm rubygem-psych-3.3.2-165.el9_5.x86_64.rpm rubygem-rake-13.0.3-165.el9_5.noarch.rpm rubygem-rbs-1.4.0-165.el9_5.noarch.rpm rubygem-rdoc-6.3.4.1-165.el9_5.noarch.rpm rubygem-rexml-3.2.5-165.el9_5.noarch.rpm rubygem-rss-0.2.9-165.el9_5.noarch.rpm rubygem-test-unit-3.3.7-165.el9_5.noarch.rpm rubygem-typeprof-0.15.2-165.el9_5.noarch.rpm rubygems-3.2.33-165.el9_5.noarch.rpm rubygems-devel-3.2.33-165.el9_5.noarch.rpm ruby-doc-3.0.7-165.el9_...

Read the Full Advisory

aarch64

ruby-3.0.7-165.el9_5.aarch64.rpm ruby-default-gems-3.0.7-165.el9_5.noarch.rpm ruby-devel-3.0.7-165.el9_5.aarch64.rpm ruby-libs-3.0.7-165.el9_5.aarch64.rpm rubygem-bigdecimal-3.0.0-165.el9_5.aarch64.rpm rubygem-bundler-2.2.33-165.el9_5.noarch.rpm rubygem-io-console-0.5.7-165.el9_5.aarch64.rpm rubygem-irb-1.3.5-165.el9_5.noarch.rpm rubygem-json-2.5.1-165.el9_5.aarch64.rpm rubygem-minitest-5.14.2-165.el9_5.noarch.rpm rubygem-power_assert-1.2.1-165.el9_5.noarch.rpm rubygem-psych-3.3.2-165.el9_5.aarch64.rpm rubygem-rake-13.0.3-165.el9_5.noarch.rpm rubygem-rbs-1.4.0-165.el9_5.noarch.rpm rubygem-rdoc-6.3.4.1-165.el9_5.noarch.rpm rubygem-rexml-3.2.5-165.el9_5.noarch.rpm rubygem-rss-0.2.9-165.el9_5.noarch.rpm rubygem-test-unit-3.3.7-165.el9_5.noarch.rpm rubygem-typeprof-0.15.2-165.el9_5.noarch.rpm rubygems-3.2.33-165.el9_5.noarch.rpm rubygems-devel-3.2.33-165.el9_5.noarch.rpm ruby-doc-3.0.7-165.el9_5.noarch.rpm

Related CVEs: CVE-2025-27219 CVE-2025-27220

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here