[CLSA-2026:1781716230] alt-ruby31: Fix of CVE-2025-61594
Type:
security
Severity:
Important
Release date:
2026-06-17 17:10:46 UTC
Description:
- CVE-2025-61594: fix credential leak in bundled uri library when combining URIs with + / merge (set_userinfo/set_user/host=/port= clearing and atomic authority replacement in lib/uri/generic.rb); backport of upstream uri 0.12.5
CVEs fixed:
Updated packages:
  • alt-ruby31-3.1.7-11.el9.x86_64.rpm
    sha:3bff484087a854caf81213419a847b3f46a127fc6a0acacc65751804af05a72a
  • alt-ruby31-bundled-gems-3.1.7-11.el9.x86_64.rpm
    sha:2acf790864686ddf71e0c47c1c725ddc6da78d1b9e9843eb4fc81d5a3ca29290
  • alt-ruby31-default-gems-3.1.7-11.el9.noarch.rpm
    sha:9fbf77101975a6b1b18b0b54c3b090e2309e2a439d3c6cb6ea2bdc8c08f43f95
  • alt-ruby31-devel-3.1.7-11.el9.x86_64.rpm
    sha:830911dd24c9fcd14f77d8e0707177c7f1147e88be5ee55359d83205e1fccf12
  • alt-ruby31-doc-3.1.7-11.el9.noarch.rpm
    sha:296f546a095ecca16be39ec7a9f883fddfed7a0cb5561b43b1f63b9f0ee1c59d
  • alt-ruby31-libs-3.1.7-11.el9.x86_64.rpm
    sha:736b1c1849d7dac2e159ac60936022ccdc300d2ab9abbd31c1073b645c063b82
  • alt-ruby31-rubygem-bigdecimal-3.1.1-11.el9.x86_64.rpm
    sha:7158a95f769fcf5da788bc8a0c2e423a86ca64cc6f00e39440e16a360808002e
  • alt-ruby31-rubygem-bundler-2.3.27-11.el9.noarch.rpm
    sha:550834f4f9b9372bfa750b624bd97620705c344ef6f5bd9a1ffecb8f0232f6c5
  • alt-ruby31-rubygem-io-console-0.5.11-11.el9.x86_64.rpm
    sha:45e044b24b724322171a51ead3449d1f34087793af047f6c1e8eac1eaef9a600
  • alt-ruby31-rubygem-irb-1.4.1-11.el9.noarch.rpm
    sha:99fff9ceaba2b89a08fe234185fd26609ce86465b7fc40b307d255ba63e00fc5
  • alt-ruby31-rubygem-json-2.6.1-11.el9.x86_64.rpm
    sha:ff603fb3a1a1df81419e918614b8a7ac3e5b49b5e129039d5179dff1ba8d14da
  • alt-ruby31-rubygem-minitest-5.15.0-11.el9.noarch.rpm
    sha:a25587b48c320a8f3c22b5b2a0a7aa17aed63d126c9399c18da8f7da6d6fcd81
  • alt-ruby31-rubygem-power_assert-2.0.1-11.el9.noarch.rpm
    sha:35e05b4503c95fa27d388920c211666165c3a9d6ba736463b23a0525b7eba197
  • alt-ruby31-rubygem-psych-4.0.4-11.el9.x86_64.rpm
    sha:6f9bbd2ed9cf04cbfc20baba2c224d3684d63859d32a0db4e2b834f3af2fec92
  • alt-ruby31-rubygem-rake-13.0.6-11.el9.noarch.rpm
    sha:8dbe25d4f17d5da0fe9dd604a5e2858023b20b8d26765f1f3137ff9ace40d7e7
  • alt-ruby31-rubygem-rbs-2.7.0-11.el9.x86_64.rpm
    sha:ef5fb8bf3ae81188cfb173dcbfda287a148266be392d414067ec7e1910f8101a
  • alt-ruby31-rubygem-rdoc-6.4.1.1-11.el9.noarch.rpm
    sha:45bd15d470f89c7fe5215a8117eaf841d0f27236fa45b6fc94ee8b51e38a9bf3
  • alt-ruby31-rubygem-rexml-3.3.9-11.el9.noarch.rpm
    sha:ef3be5e77d3e3b2a70389449c1eaf2be05befa4f1b90d438226e3061ffc8216f
  • alt-ruby31-rubygem-rss-0.3.1-11.el9.noarch.rpm
    sha:0f08db1f9654b5c44b62952e1f8f84b852167db8ceb1dbedc4e39d3482a59e72
  • alt-ruby31-rubygem-test-unit-3.5.3-11.el9.noarch.rpm
    sha:bd511c53f4b90231fb3ddf10bfa3d70c3c9144f8a692c5dac5b04eea878b9a8f
  • alt-ruby31-rubygem-typeprof-0.21.3-11.el9.noarch.rpm
    sha:577d8d162d0d2755d5655e83348e0defc7f23b03ff2a8e0eb90b06dd8d1ddaf3
  • alt-ruby31-rubygems-3.3.27-11.el9.noarch.rpm
    sha:0c2b11a47a20c31a7e14365f5372e93917729c3ccf3dfe032ecd85cbc00b9386
  • alt-ruby31-rubygems-devel-3.3.27-11.el9.noarch.rpm
    sha:f10e38df4501c7d3461e89548370d2a854a76596f50681aafaf724628b7d1b28
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.