File _patchinfo of Package patchinfo.14691

<patchinfo incident="14691">
  <issue tracker="bnc" id="1168938">VUL-0: CVE-2020-10933: ruby2.5: Heap exposure vulnerability in the socket library</issue>
  <issue tracker="bnc" id="1167244">VUL-1: CVE-2020-10663: rubygem-json: Unsafe Object Creation Vulnerability in JSON</issue>
  <issue tracker="cve" id="2020-10663"/>
  <issue tracker="cve" id="2020-10933"/>
  <packager>darix</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for ruby2.5</summary>
  <description>This update for ruby2.5 to version 2.5.8 fixes the following issues:

- CVE-2020-10663: Unsafe Object Creation Vulnerability in JSON (bsc#1167244).
- CVE-2020-10933: Heap exposure vulnerability in the socket library (bsc#1168938).
</description>
</patchinfo>
openSUSE Build Service is sponsored by