-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-e3985c2b3b 2023-01-30 01:23:29.292146 --------------------------------------------------------------------------------
Name : rubygem-git Product : Fedora 37 Version : 1.13.0 Release : 1.fc37 URL : http://github.com/schacon/ruby-git Summary : Ruby/Git is a Ruby library that can be used to create, read and manipulate Git repositories by wrapping system calls to the git binary Description : Ruby/Git is a Ruby library that can be used to create, read and manipulate Git repositories by wrapping system calls to the git binary.
-------------------------------------------------------------------------------- Update Information:
* CVE-2022-47318 -------------------------------------------------------------------------------- ChangeLog:
* Fri Jan 20 2023 Steve Traylen steve.traylen@cern.ch - 1.13.0-1 - Up to 1.13.0. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2159673 - rubygem-git: ruby-git: multiple code injection vulnerabilities [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2159673 [ 2 ] Bug #2159674 - rubygem-git: ruby-git: multiple code injection vulnerabilities [fedora-36] https://bugzilla.redhat.com/show_bug.cgi?id=2159674 [ 3 ] Bug #2161643 - CVE-2022-47318 rubygem-git: ruby-git: code injection vulnerabilities in ruby-git [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2161643 --------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-e3985c2b3b' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------
package-announce@lists.fedoraproject.org