Oval Definition:
oval:org.opensuse.security:def:74182
Revision Date
:
2020-12-01
Version
:
1
Title
:
Security update for rubygem-actionpack-5_1 (Important)
Description
:
This update for rubygem-actionpack-5_1 fixes the following issues:
- CVE-2020-8164: Possible Strong Parameters Bypass in ActionPack. There is a strong parameters bypass vector in ActionPack. (bsc#1172177)
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
1136468
1139945
1142880
1142882
1142883
1142885
1172177
CVE-2019-11358
CVE-2019-12308
CVE-2019-12781
CVE-2019-14232
CVE-2019-14233
CVE-2019-14234
CVE-2019-14235
CVE-2020-8164
openSUSE-SU-2019:1839-1
SUSE-SU-2020:2710-1
Platform(s)
:
openSUSE Leap 15.1
SUSE Linux Enterprise High Availability 15 SP2
Product(s)
:
Definition Synopsis
openSUSE Leap 15.1 is installed
AND
Package Information
python-Django-2.2.4-lp151.2.3 is installed
OR
python3-Django-2.2.4-lp151.2.3 is installed
Definition Synopsis
SUSE Linux Enterprise High Availability 15 SP2 is installed
AND
Package Information
ruby2.5-rubygem-actionpack-5_1-5.1.4-3.6 is installed
OR
rubygem-actionpack-5_1-5.1.4-3.6 is installed
BACK