rh-ruby23-rubygems-devel vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the rh-ruby23-rubygems-devel package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Null Byte Interaction Error (Poison Null Byte)

<0:2.5.2.3-69.el7
  • H
Out-of-Bounds

<0:2.5.2.2-67.el7
  • H
Heap-based Buffer Overflow

<0:2.5.2.2-67.el7
  • H
Improper Input Validation

<0:2.5.2.2-67.el7
  • H
Information Exposure

<0:2.5.2.2-67.el7
  • H
Directory Traversal

<0:2.5.2.3-69.el7
  • H
Null Byte Interaction Error (Poison Null Byte)

<0:2.5.2.3-69.el7
  • H
Resource Exhaustion

<0:2.5.2.3-69.el7
  • H
Directory Traversal

<0:2.5.2.3-69.el7
  • H
Improper Certificate Validation

<0:2.5.2.3-69.el7
  • H
Improper Input Validation

<0:2.5.2.3-69.el7
  • H
Improper Verification of Cryptographic Signature

<0:2.5.2.3-69.el7
  • H
Directory Traversal

<0:2.5.2.3-69.el7
  • H
Cross-site Scripting (XSS)

<0:2.5.2.3-69.el7
  • H
Deserialization of Untrusted Data

<0:2.5.2.3-69.el7
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:2.5.2.3-69.el7
  • H
Improper Input Validation

<0:2.5.2.3-69.el7
  • H
Directory Traversal

<0:2.5.2.3-69.el7
  • H
Improper Input Validation

<0:2.5.2.3-70.el7
  • H
HTTP Response Splitting

<0:2.5.2.3-69.el7
  • H
Arbitrary Command Injection

<0:2.5.2.2-67.el7
  • H
Improper Input Validation

<0:2.5.2.2-67.el7
  • H
Improper Neutralization of Special Elements

<0:2.5.2.2-67.el7
  • H
Improper Neutralization of Special Elements

<0:2.5.2.2-67.el7
  • H
Improper Neutralization of Special Elements

<0:2.5.2.2-67.el7
  • H
Improper Output Neutralization for Logs

<0:2.5.2.2-67.el7
  • H
Improper Neutralization of Special Elements

<0:2.5.2.2-67.el7
  • M
Inadequate Encryption Strength

*
  • M
Heap-based Buffer Overflow

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • L
Arbitrary Argument Injection

*