[ubuntu/focal-security] ruby2.7 2.7.0-5ubuntu1.10 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Fri May 5 12:49:20 UTC 2023


ruby2.7 (2.7.0-5ubuntu1.10) focal-security; urgency=medium

  * SECURITY REGRESSION: URI.parse returning empty when it should return nil
    - reverting/removing patches for CVE-2023-28755-*.patch that changed the
      regex behaviour causing URI.parse to return '' instead previous
      behaviour nil as some applications expected to use the last one as
      return (LP: #2018547)

Date: 2023-05-05 08:43:12.639266+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/ruby2.7/2.7.0-5ubuntu1.10
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list