{
  "cves": [
    "CVE-2026-42245",
    "CVE-2026-42246",
    "CVE-2026-42258"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "ruby\n[3.3.10-7]\n- Fix DoS via crafted IMAP responses in net-imap. (CVE-2026-42245)\n  Resolves: RHEL-181693\n- Fix information disclosure via MITM attack bypassing TLS in net-imap.\n  (CVE-2026-42246)\n  Resolves: RHEL-181779\n- Fix command injection via Symbol arguments in net-imap. (CVE-2026-42258)\n  Resolves: RHEL-181811\n\nrubygem-mysql2\n[0.5.5-3]\n- Disable tests on the 32bit platforms ix86.\n  Related: RHEL-80222\n\nrubygem-pg\n[-1.5.4-2]\n- Fix encoding issue in spec suite.\n  Resolves: RHEL-159199",
  "id": "ELSA-2026-33576",
  "ovalId": "oval:com.oracle.elsa:def:202633576",
  "source": "oracle_linux",
  "title": "ELSA-2026-33576:  ruby:3.3 security update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2026-33576.html"
}