[El-errata] ELSA-2025-4487 Moderate: Oracle Linux 9 ruby security update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Tue May 13 23:52:57 UTC 2025
Oracle Linux Security Advisory ELSA-2025-4487
http://linux.oracle.com/errata/ELSA-2025-4487.html
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
x86_64:
ruby-3.0.7-165.el9_5.i686.rpm
ruby-3.0.7-165.el9_5.x86_64.rpm
ruby-default-gems-3.0.7-165.el9_5.noarch.rpm
ruby-devel-3.0.7-165.el9_5.i686.rpm
ruby-devel-3.0.7-165.el9_5.x86_64.rpm
ruby-libs-3.0.7-165.el9_5.i686.rpm
ruby-libs-3.0.7-165.el9_5.x86_64.rpm
rubygem-bigdecimal-3.0.0-165.el9_5.x86_64.rpm
rubygem-bundler-2.2.33-165.el9_5.noarch.rpm
rubygem-io-console-0.5.7-165.el9_5.x86_64.rpm
rubygem-irb-1.3.5-165.el9_5.noarch.rpm
rubygem-json-2.5.1-165.el9_5.x86_64.rpm
rubygem-minitest-5.14.2-165.el9_5.noarch.rpm
rubygem-power_assert-1.2.1-165.el9_5.noarch.rpm
rubygem-psych-3.3.2-165.el9_5.x86_64.rpm
rubygem-rake-13.0.3-165.el9_5.noarch.rpm
rubygem-rbs-1.4.0-165.el9_5.noarch.rpm
rubygem-rdoc-6.3.4.1-165.el9_5.noarch.rpm
rubygem-rexml-3.2.5-165.el9_5.noarch.rpm
rubygem-rss-0.2.9-165.el9_5.noarch.rpm
rubygem-test-unit-3.3.7-165.el9_5.noarch.rpm
rubygem-typeprof-0.15.2-165.el9_5.noarch.rpm
rubygems-3.2.33-165.el9_5.noarch.rpm
rubygems-devel-3.2.33-165.el9_5.noarch.rpm
ruby-doc-3.0.7-165.el9_5.noarch.rpm
aarch64:
ruby-3.0.7-165.el9_5.aarch64.rpm
ruby-default-gems-3.0.7-165.el9_5.noarch.rpm
ruby-devel-3.0.7-165.el9_5.aarch64.rpm
ruby-libs-3.0.7-165.el9_5.aarch64.rpm
rubygem-bigdecimal-3.0.0-165.el9_5.aarch64.rpm
rubygem-bundler-2.2.33-165.el9_5.noarch.rpm
rubygem-io-console-0.5.7-165.el9_5.aarch64.rpm
rubygem-irb-1.3.5-165.el9_5.noarch.rpm
rubygem-json-2.5.1-165.el9_5.aarch64.rpm
rubygem-minitest-5.14.2-165.el9_5.noarch.rpm
rubygem-power_assert-1.2.1-165.el9_5.noarch.rpm
rubygem-psych-3.3.2-165.el9_5.aarch64.rpm
rubygem-rake-13.0.3-165.el9_5.noarch.rpm
rubygem-rbs-1.4.0-165.el9_5.noarch.rpm
rubygem-rdoc-6.3.4.1-165.el9_5.noarch.rpm
rubygem-rexml-3.2.5-165.el9_5.noarch.rpm
rubygem-rss-0.2.9-165.el9_5.noarch.rpm
rubygem-test-unit-3.3.7-165.el9_5.noarch.rpm
rubygem-typeprof-0.15.2-165.el9_5.noarch.rpm
rubygems-3.2.33-165.el9_5.noarch.rpm
rubygems-devel-3.2.33-165.el9_5.noarch.rpm
ruby-doc-3.0.7-165.el9_5.noarch.rpm
SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//ruby-3.0.7-165.el9_5.src.rpm
Related CVEs:
CVE-2025-27219
CVE-2025-27220
Description of changes:
[3.0.7-165]
- Fix Denial of Service in CGI::Cookie.parse. (CVE-2025-27219)
Resolves: RHEL-86104
- Fix ReDoS in CGI::Util#escapeElement. (CVE-2025-27220)
Resolves: RHEL-86130
[3.0.7-164]
- Undefine GC compaction methods on ppc64le.
Resolves: RHEL-83136
- Fix printing warnings when using IRB from a script.
Resolves: RHEL-83044
More information about the El-errata
mailing list