--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2019-8ecd991303
2019-11-22 00:46:48.106734
--------------------------------------------------------------------------------
Name : rubygem-rubyzip
Product : Fedora 31
Version : 1.1.7
Release : 10.fc31
URL :
http://github.com/rubyzip/rubyzip
Summary : A ruby module for reading and writing zip files
Description :
A ruby module for reading and writing zip files.
--------------------------------------------------------------------------------
Update Information:
Fix CVE-2019-16892 denial of service via crafted ZIP file.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Nov 12 2019 V��t Ondruch <vondruch(a)redhat.com> - 1.1.7-10
- Fix CVE-2019-16892 denial of service via crafted ZIP file.
Resolves: rhbz#1771298
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1771298 - CVE-2019-16892 rubygem-rubyzip: denial of service via crafted ZIP
file
https://bugzilla.redhat.com/show_bug.cgi?id=1771298
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2019-8ecd991303' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------