File _patchinfo of Package patchinfo.14691
<patchinfo incident="14691">
<issue tracker="bnc" id="1168938">VUL-0: CVE-2020-10933: ruby2.5: Heap exposure vulnerability in the socket library</issue>
<issue tracker="bnc" id="1167244">VUL-1: CVE-2020-10663: rubygem-json: Unsafe Object Creation Vulnerability in JSON</issue>
<issue tracker="cve" id="2020-10663"/>
<issue tracker="cve" id="2020-10933"/>
<packager>darix</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for ruby2.5</summary>
<description>This update for ruby2.5 to version 2.5.8 fixes the following issues:
- CVE-2020-10663: Unsafe Object Creation Vulnerability in JSON (bsc#1167244).
- CVE-2020-10933: Heap exposure vulnerability in the socket library (bsc#1168938).
</description>
</patchinfo>