-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-4929-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff June 09, 2021 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : rails CVE ID : CVE-2021-22880 CVE-2021-22885 CVE-2021-22904 Debian Bug : 988214 Multiple security issues were discovered in the Rails web framework which could result in denial of service. For the stable distribution (buster), these problems have been fixed in version 2:5.2.2.1+dfsg-1+deb10u3. We recommend that you upgrade your rails packages. For the detailed security status of rails please refer to its security tracker page at: https://security-tracker.debian.org/tracker/rails Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmDBLRkACgkQEMKTtsN8 TjarhQ//ehjd24UB/VzigZ4Pl2QlqG+UUX6oz2R3/bKFUV8Ql2mZ6nQv6lGFUxoU 8Slvjeo3spd9KgZ7vpQnjndlykaPzKbuV/q7eyO16nxUcUmhJZgI0CH3gD1v2kOQ 2Ah1BbPueQ9AS7EUxwDTBpnHkTceqh09P7gtkab3ZI2LsGfr4q7gXuxscU/HCtRE kKLWRj4SvtVDEbM/RM4R3BxJrZphAZ0CJUqexoJgtcxZMCRAqaMxdr74dz1igjyY 0z7xzNs45lg/j4rHnrbWpfon4J83LcpO7GA412lmMvQA4ntXz1IkrnyB1E8OR5oI wQDki3x+g2DqRCTyMheyuDlRiEk+esf5Sd+JqgtOLmFpyIaltAzUgwD1tdfsp2Uo LsKR92rM/yJmoXQwD/L4JiGBwPx/NpXU9StkUXOo3d+ctK+u1wFO8ahnyU1wu4/G 72v36+QGtgQF1NXITQk4htZbMqQZF9JN+vQe6XucQsRfJVxW96JtTBsPAWQjGXWO VWyD+YaS9B+/CCqGeVedXqjPT4r79xyCzBv//qQ2md1Yc4lo9J6D9UxNsEgcqT4d M7yRXLPFOBzHzerm+3pvstBgbqOnv+Z57E28CGOb7/RCl7rZA6OAQHl4xpIHydt1 hhFNi9zAHF7XCQOqUIAM7gdXy/jRuhzcjsCh+9LA7GyXVvcqDM4= =Tt64 -----END PGP SIGNATURE-----