Packages
Details
It was discovered that Ruby incorrectly handled certain IO stream
methods. A remote attacker could use this issue to cause Ruby to crash,
resulting in a denial of service, or possibly obtain sensitive
information. This issue only affected Ubuntu 18.04 LTS. (CVE-2024-27280)
It was discovered that the Ruby regex compiler incorrectly handled
certain memory operations. A remote attacker could possibly use this
issue to obtain sensitive memory contents. This issue only affected
Ubuntu 18.04 LTS. (CVE-2024-27282)
It was discovered that Ruby incorrectly handled parsing of certain XML
characters through the REXML gem. An attacker could use this issue to
cause Ruby to crash, resulting in a denial of service. This issue only
affected Ubuntu 18.04 LTS. (CVE-2024-35176)
It was discovered that Ruby incorrectly handled...
It was discovered that Ruby incorrectly handled certain IO stream
methods. A remote attacker could use this issue to cause Ruby to crash,
resulting in a denial of service, or possibly obtain sensitive
information. This issue only affected Ubuntu 18.04 LTS. (CVE-2024-27280)
It was discovered that the Ruby regex compiler incorrectly handled
certain memory operations. A remote attacker could possibly use this
issue to obtain sensitive memory contents. This issue only affected
Ubuntu 18.04 LTS. (CVE-2024-27282)
It was discovered that Ruby incorrectly handled parsing of certain XML
characters through the REXML gem. An attacker could use this issue to
cause Ruby to crash, resulting in a denial of service. This issue only
affected Ubuntu 18.04 LTS. (CVE-2024-35176)
It was discovered that Ruby incorrectly handled decompressed domain names
within a DNS packet. An attacker could use this issue to cause Ruby to
crash, resulting in a denial of service. (CVE-2025-24294)
Update instructions
In general, a standard system update will make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
Ubuntu Release | Package Version | ||
---|---|---|---|
25.04 plucky | libruby3.3 – 3.3.7-1ubuntu2.1 | ||
ruby3.3 – 3.3.7-1ubuntu2.1 | |||
24.04 noble | libruby3.2 – 3.2.3-1ubuntu0.24.04.6 | ||
ruby3.2 – 3.2.3-1ubuntu0.24.04.6 | |||
22.04 jammy | libruby3.0 – 3.0.2-7ubuntu2.11 | ||
ruby3.0 – 3.0.2-7ubuntu2.11 | |||
20.04 focal | libruby2.7 – 2.7.0-5ubuntu1.18+esm1 | ||
ruby2.7 – 2.7.0-5ubuntu1.18+esm1 | |||
18.04 bionic | libruby2.5 – 2.5.1-1ubuntu1.16+esm5 | ||
ruby2.5 – 2.5.1-1ubuntu1.16+esm5 |
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.