--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2019-d0af506401
2019-02-26 03:04:46.114817
--------------------------------------------------------------------------------
Name : rubygem-activejob
Product : Fedora 29
Version : 5.2.1
Release : 2.fc29
URL :
http://rubyonrails.org
Summary : Job framework with pluggable queues
Description :
Declare job classes that can be run by a variety of queueing backends.
--------------------------------------------------------------------------------
Update Information:
Fix information exposure through deserialization using GlobalId
(CVE-2018-16476).
--------------------------------------------------------------------------------
ChangeLog:
* Mon Feb 11 2019 V��t Ondruch <vondruch(a)redhat.com> - 5.2.1-2
- Fix information exposure through deserialization using GlobalId
(CVE-2018-16476).
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1659223 - CVE-2018-16476 activejob: Information Exposure through
deserialization using GlobalId
https://bugzilla.redhat.com/show_bug.cgi?id=1659223
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2019-d0af506401' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------