security advisorydebianauthentication issue
Improper Authentication has been fixed in ruby-doorkeeper, an OAuth 2 provider for Rails and Grape. For Debian 11 bullseye, this problem has been fixed in version . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3989-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Adrian Bunk December 09, 2024 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : ruby-doorkeeper Version : 5.3.0-2+deb11u1 CVE ID : CVE-2023-34246 Debian Bug : 1038950 Improper Authentication has been fixed in ruby-doorkeeper, an OAuth 2 provider for Rails and Grape. For Debian 11 bullseye, this problem has been fixed in version 5.3.0-2+deb11u1. We recommend that you upgrade your ruby-doorkeeper packages. For the detailed security status of ruby-doorkeeper please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/ruby-doorkeeper Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . The security bulletin DLA-3990-2 addresses a python-flask update resolving vulnerabilities in session management; updating is recommended for protection.. Debian Security Updates,ruby-doorkeeper,security advisory. . Severity: Critical. LinuxSecurity.com Team
Dec 09, 2024
•Critical
Debian LTS