summaryrefslogtreecommitdiffstats
path: root/meta/recipes-devtools/ruby/ruby_3.1.3.bb
diff options
context:
space:
mode:
authorYogita Urade <yogita.urade@windriver.com>2024-04-16 10:39:05 +0000
committerSteve Sakoman <steve@sakoman.com>2024-04-21 06:33:34 -0700
commit70c869275acef71c69be8f88207741384c61fba0 (patch)
treea7d2a517c7cf4ed2847edac95de9165affa68b99 /meta/recipes-devtools/ruby/ruby_3.1.3.bb
parent888ea24812c21910e74c864313be56f02fad6c2e (diff)
downloadpoky-70c869275acef71c69be8f88207741384c61fba0.tar.gz
ruby: fix CVE-2024-27281
ruby: RCE vulnerability with .rdoc_options in RDoc References: https://github.com/ruby/ruby/pull/10316 https://security-tracker.debian.org/tracker/CVE-2024-27281 (From OE-Core rev: d01b73c51ceead4911a9a9306dbe728f1db2e029) Signed-off-by: Yogita Urade <yogita.urade@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'meta/recipes-devtools/ruby/ruby_3.1.3.bb')
-rw-r--r--meta/recipes-devtools/ruby/ruby_3.1.3.bb1
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/recipes-devtools/ruby/ruby_3.1.3.bb b/meta/recipes-devtools/ruby/ruby_3.1.3.bb
index 228a2204db..2ad3c9e207 100644
--- a/meta/recipes-devtools/ruby/ruby_3.1.3.bb
+++ b/meta/recipes-devtools/ruby/ruby_3.1.3.bb
@@ -33,6 +33,7 @@ SRC_URI = "http://cache.ruby-lang.org/pub/ruby/${SHRT_VER}/ruby-${PV}.tar.gz \
33 file://CVE-2023-28755.patch \ 33 file://CVE-2023-28755.patch \
34 file://CVE-2023-36617_1.patch \ 34 file://CVE-2023-36617_1.patch \
35 file://CVE-2023-36617_2.patch \ 35 file://CVE-2023-36617_2.patch \
36 file://CVE-2024-27281.patch \
36 " 37 "
37UPSTREAM_CHECK_URI = "https://www.ruby-lang.org/en/downloads/" 38UPSTREAM_CHECK_URI = "https://www.ruby-lang.org/en/downloads/"
38 39