diff options
| author | Yogita Urade <yogita.urade@windriver.com> | 2024-04-16 10:39:05 +0000 |
|---|---|---|
| committer | Steve Sakoman <steve@sakoman.com> | 2024-04-21 06:33:34 -0700 |
| commit | 70c869275acef71c69be8f88207741384c61fba0 (patch) | |
| tree | a7d2a517c7cf4ed2847edac95de9165affa68b99 /meta/recipes-devtools/ruby/ruby_3.1.3.bb | |
| parent | 888ea24812c21910e74c864313be56f02fad6c2e (diff) | |
| download | poky-70c869275acef71c69be8f88207741384c61fba0.tar.gz | |
ruby: fix CVE-2024-27281
ruby: RCE vulnerability with .rdoc_options in RDoc
References:
https://github.com/ruby/ruby/pull/10316
https://security-tracker.debian.org/tracker/CVE-2024-27281
(From OE-Core rev: d01b73c51ceead4911a9a9306dbe728f1db2e029)
Signed-off-by: Yogita Urade <yogita.urade@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'meta/recipes-devtools/ruby/ruby_3.1.3.bb')
| -rw-r--r-- | meta/recipes-devtools/ruby/ruby_3.1.3.bb | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/recipes-devtools/ruby/ruby_3.1.3.bb b/meta/recipes-devtools/ruby/ruby_3.1.3.bb index 228a2204db..2ad3c9e207 100644 --- a/meta/recipes-devtools/ruby/ruby_3.1.3.bb +++ b/meta/recipes-devtools/ruby/ruby_3.1.3.bb | |||
| @@ -33,6 +33,7 @@ SRC_URI = "http://cache.ruby-lang.org/pub/ruby/${SHRT_VER}/ruby-${PV}.tar.gz \ | |||
| 33 | file://CVE-2023-28755.patch \ | 33 | file://CVE-2023-28755.patch \ |
| 34 | file://CVE-2023-36617_1.patch \ | 34 | file://CVE-2023-36617_1.patch \ |
| 35 | file://CVE-2023-36617_2.patch \ | 35 | file://CVE-2023-36617_2.patch \ |
| 36 | file://CVE-2024-27281.patch \ | ||
| 36 | " | 37 | " |
| 37 | UPSTREAM_CHECK_URI = "https://www.ruby-lang.org/en/downloads/" | 38 | UPSTREAM_CHECK_URI = "https://www.ruby-lang.org/en/downloads/" |
| 38 | 39 | ||
