QID 690188

Date Published: 2021-10-14

QID 690188: Free Berkeley Software Distribution (FreeBSD) Security Update for ruby (dec7e4b6-961a-11eb-9c34-080027f515ea)

FreeBSD is an operating system used to power modern servers, desktops, and embedded platforms.

FreeBSD has released a security update.
Affected versions:

Version range 2.5.0,1 to 2.5.9,1 for package ruby
Version range 2.6.0,1 to 2.6.7,1 for package ruby
Version range 2.7.0,1 to 2.7.3,1 for package ruby
Version range 3.0.0.p1,1 to 3.0.1,1 for package ruby
Version range 0.0.0 to 3.2.5 for package rubygem-rexml

QID Detection Logic: (Authenticated)
It checks package versions to check for the vulnerable packages.

Successful exploitation allows attacker to compromise the system.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    Please refer to FreeBSD security advisory dec7e4b6-961a-11eb-9c34-080027f515ea for updates and patch information
    Vendor References

    CVEs related to QID 690188

    Software Advisories
    Advisory ID Software Component Link
    dec7e4b6-961a-11eb-9c34-080027f515ea "FreeBSD" URL Logo vuxml.freebsd.org/freebsd/dec7e4b6-961a-11eb-9c34-080027f515ea.html