[CLSA-2026:1781716773] alt-ruby31: Fix of CVE-2025-61594
Type:
security
Severity:
Important
Release date:
2026-06-17 17:19:49 UTC
Description:
- CVE-2025-61594: fix credential leak in bundled uri library when combining URIs with + / merge (set_userinfo/set_user/host=/port= clearing and atomic authority replacement in lib/uri/generic.rb); backport of upstream uri 0.12.5
CVEs fixed:
Updated packages:
  • alt-ruby31-3.1.7-11.el8.x86_64.rpm
    sha:4b1be98ff5a8dd555ae9a602aabf2ebfe2718567862e0d4347c9b1305541262b
  • alt-ruby31-bundled-gems-3.1.7-11.el8.x86_64.rpm
    sha:f8164a3280e30444385e1134771f9dcd7cd2094f9c8a77634378cdb32ed958b8
  • alt-ruby31-default-gems-3.1.7-11.el8.noarch.rpm
    sha:d6ee7ce5401d98ff3f6afa1867597b1e24c21181cb6ab905d1015c0e4723a034
  • alt-ruby31-devel-3.1.7-11.el8.x86_64.rpm
    sha:8c6332ea88414b7fbeeaee322b764fd63096337c2a44040fbd3c04b45bb8bb67
  • alt-ruby31-doc-3.1.7-11.el8.noarch.rpm
    sha:01171e009344bd037617d5c02404245130c28e039afbacf804f3db1c2aef0671
  • alt-ruby31-libs-3.1.7-11.el8.x86_64.rpm
    sha:4d794097a209c91948bda723dd30ab740df4868338d7a6e7fe148c97b33a6b7d
  • alt-ruby31-rubygem-bigdecimal-3.1.1-11.el8.x86_64.rpm
    sha:72146d34a0b4be047230c8594228045eab211abd62ddb3708bd46238481e9fb6
  • alt-ruby31-rubygem-bundler-2.3.27-11.el8.noarch.rpm
    sha:31f622bc220026bcfa3d13b4b44cc126fcaf7da52f9cf0009e46b59ea7baba24
  • alt-ruby31-rubygem-io-console-0.5.11-11.el8.x86_64.rpm
    sha:d762ce01acfab76820867001cd51d4f8a78c359d714ff53d7507849a1169d333
  • alt-ruby31-rubygem-irb-1.4.1-11.el8.noarch.rpm
    sha:06d78514454d02b223aa043333c055b69551eea9831e86599189dce35cff661d
  • alt-ruby31-rubygem-json-2.6.1-11.el8.x86_64.rpm
    sha:deee1762f67331a41d42a806894114ea3ff2e8db544eaebe3941f63a28ff240c
  • alt-ruby31-rubygem-minitest-5.15.0-11.el8.noarch.rpm
    sha:834964522f3747331394e1dd6774847eaf1e689e8e9822dfa303ecf6f25d2bf8
  • alt-ruby31-rubygem-power_assert-2.0.1-11.el8.noarch.rpm
    sha:a92ae175c4c88789f2e5c7b6cc32b9ec3e04367aac31db6b1b704527ab061e1d
  • alt-ruby31-rubygem-psych-4.0.4-11.el8.x86_64.rpm
    sha:8558365fc6914662c75d6accc85332eb8a9648ba9e9da88f7065fd2b58198675
  • alt-ruby31-rubygem-rake-13.0.6-11.el8.noarch.rpm
    sha:1ad64cb821659b018a9ef4695621121af71a67ef674717c87782029cab3317b3
  • alt-ruby31-rubygem-rbs-2.7.0-11.el8.x86_64.rpm
    sha:36759cdd5b3af9adaea71c05a2acf5427f5f41d5a0c89a6dc14ef1fe1185f0c5
  • alt-ruby31-rubygem-rdoc-6.4.1.1-11.el8.noarch.rpm
    sha:51079c7c623c3c7657d87f4a4472a73e9b944419ea0740b74c4ae389537902c9
  • alt-ruby31-rubygem-rexml-3.3.9-11.el8.noarch.rpm
    sha:1cb63bced5a231441071b83a85f4eebeca3307ba2a6f36e6d906681ece665a47
  • alt-ruby31-rubygem-rss-0.3.1-11.el8.noarch.rpm
    sha:c83ddb0f8dad0485b794e04bc14ca7b8febe220c7daa3c83fa971d75e90c77e6
  • alt-ruby31-rubygem-test-unit-3.5.3-11.el8.noarch.rpm
    sha:a066edab88e831535dc59a53ce65a3ff633ecd2bfa4369c8d49231f402465875
  • alt-ruby31-rubygem-typeprof-0.21.3-11.el8.noarch.rpm
    sha:c01237044dfe0e377fadb3db913063d3e28f0463febc5d7fe5a30be3a4adf24d
  • alt-ruby31-rubygems-3.3.27-11.el8.noarch.rpm
    sha:aea3535ecf7d7cbe3f88b41e911eaea7d76ffd0fce71dff89d11f1e22ed2aa56
  • alt-ruby31-rubygems-devel-3.3.27-11.el8.noarch.rpm
    sha:2b855f83ba9d164af10b9021482a831f55fe56d6d2b32c5e3d83d3fd5c93ef9b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.