Skip to content
Commits on Source (2)
......@@ -4864,18 +4864,66 @@ CVE-2019-8327
RESERVED
CVE-2019-8326
RESERVED
CVE-2019-8325
CVE-2019-8325 [Escape sequence injection vulnerability in errors]
RESERVED
CVE-2019-8324
- ruby2.5 <unfixed>
- ruby2.3 <removed>
- ruby2.1 <removed>
- rubygems <removed>
- jruby <unfixed>
NOTE: https://bugs.ruby-lang.org/attachments/7669
NOTE: https://www.ruby-lang.org/en/news/2019/03/05/multiple-vulnerabilities-in-rubygems/
NOTE: https://blog.rubygems.org/2019/03/05/security-advisories-2019-03.html
CVE-2019-8324 [Installing a malicious gem may lead to arbitrary code execution]
RESERVED
CVE-2019-8323
- ruby2.5 <unfixed>
- ruby2.3 <removed>
- ruby2.1 <removed>
- rubygems <removed>
- jruby <unfixed>
NOTE: https://bugs.ruby-lang.org/attachments/7669
NOTE: https://www.ruby-lang.org/en/news/2019/03/05/multiple-vulnerabilities-in-rubygems/
NOTE: https://blog.rubygems.org/2019/03/05/security-advisories-2019-03.html
CVE-2019-8323 [Escape sequence injection vulnerability in API response handling]
RESERVED
CVE-2019-8322
- ruby2.5 <unfixed>
- ruby2.3 <removed>
- ruby2.1 <removed>
- rubygems <removed>
- jruby <unfixed>
NOTE: https://bugs.ruby-lang.org/attachments/7669
NOTE: https://www.ruby-lang.org/en/news/2019/03/05/multiple-vulnerabilities-in-rubygems/
NOTE: https://blog.rubygems.org/2019/03/05/security-advisories-2019-03.html
CVE-2019-8322 [Escape sequence injection vulnerability in gem owner]
RESERVED
CVE-2019-8321
- ruby2.5 <unfixed>
- ruby2.3 <removed>
- ruby2.1 <removed>
- rubygems <removed>
- jruby <unfixed>
NOTE: https://bugs.ruby-lang.org/attachments/7669
NOTE: https://www.ruby-lang.org/en/news/2019/03/05/multiple-vulnerabilities-in-rubygems/
NOTE: https://blog.rubygems.org/2019/03/05/security-advisories-2019-03.html
CVE-2019-8321 [Escape sequence injection vulnerability in verbose]
RESERVED
CVE-2019-8320
- ruby2.5 <unfixed>
- ruby2.3 <removed>
- ruby2.1 <removed>
- rubygems <removed>
- jruby <unfixed>
NOTE: https://bugs.ruby-lang.org/attachments/7669
NOTE: https://www.ruby-lang.org/en/news/2019/03/05/multiple-vulnerabilities-in-rubygems/
NOTE: https://blog.rubygems.org/2019/03/05/security-advisories-2019-03.html
CVE-2019-8320 [Delete directory using symlink when decompressing tar]
RESERVED
- ruby2.5 <unfixed>
- ruby2.3 <removed>
- ruby2.1 <removed>
- rubygems <removed>
- jruby <unfixed>
NOTE: https://bugs.ruby-lang.org/attachments/7669
NOTE: https://www.ruby-lang.org/en/news/2019/03/05/multiple-vulnerabilities-in-rubygems/
NOTE: https://blog.rubygems.org/2019/03/05/security-advisories-2019-03.html
CVE-2019-8319 (An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1 ...)
NOT-FOR-US: D-Link
CVE-2019-8318 (An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1 ...)