Errata ID | 538 |
---|---|
Date | 2018-11-01 |
Source package | ruby2.1 |
Fixed in version | 2.1.5-2+deb8u6 |
Description | This update addresses the following issues: * OpenSSL::X509::Name equality check does not work correctly (CVE-2018-16395) * Tainted flags are not propagated in Array#pack and String#unpack with some directives (CVE-2018-16396) |
Additional notes | |
CVE ID | CVE-2018-16395 CVE-2018-16396 |
UCS Bug number | #48072 |