elsa-2026-33576
oracle_linux
Description
ruby [3.3.10-7] - Fix DoS via crafted IMAP responses in net-imap. (CVE-2026-42245) Resolves: RHEL-181693 - Fix information disclosure via MITM attack bypassing TLS in net-imap. (CVE-2026-42246) Resolves: RHEL-181779 - Fix command injection via Symbol arguments in net-imap. (CVE-2026-42258) Resolves: RHEL-181811 rubygem-mysql2 [0.5.5-3] - Disable tests on the 32bit platforms ix86. Related: RHEL-80222 rubygem-pg [-1.5.4-2] - Fix encoding issue in spec suite. Resolves: RHEL-159199
Timeline
- Published
- unknown
- Last Modified
- unknown
CVSS Details
CVSS details not available.
Affected Products
No product information available.
References
No references available.
Linked Vulnerabilities
No linked vulnerabilities found.
{
"cves": [
"CVE-2026-42245",
"CVE-2026-42246",
"CVE-2026-42258"
],
"cvss": 0.0,
"database_specific": {
"severity": "IMPORTANT"
},
"description": "ruby\n[3.3.10-7]\n- Fix DoS via crafted IMAP responses in net-imap. (CVE-2026-42245)\n Resolves: RHEL-181693\n- Fix information disclosure via MITM attack bypassing TLS in net-imap.\n (CVE-2026-42246)\n Resolves: RHEL-181779\n- Fix command injection via Symbol arguments in net-imap. (CVE-2026-42258)\n Resolves: RHEL-181811\n\nrubygem-mysql2\n[0.5.5-3]\n- Disable tests on the 32bit platforms ix86.\n Related: RHEL-80222\n\nrubygem-pg\n[-1.5.4-2]\n- Fix encoding issue in spec suite.\n Resolves: RHEL-159199",
"id": "ELSA-2026-33576",
"ovalId": "oval:com.oracle.elsa:def:202633576",
"source": "oracle_linux",
"title": "ELSA-2026-33576: ruby:3.3 security update (IMPORTANT)",
"url": "https://linux.oracle.com/errata/ELSA-2026-33576.html"
}