Summary: | <dev-ruby/mechanize-2.7.7: command injection vulnerability (CVE-2021-21289) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | John Helmert III <ajak> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | major | CC: | ruby |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://github.com/sparklemotion/mechanize/security/advisories/GHSA-qrqm-fpv6-6r8g | ||
Whiteboard: | B1 [glsa+ cve] | ||
Package list: | Runtime testing required: | --- |
Description
John Helmert III
2021-02-04 02:48:04 UTC
amd64 stable and cleanup done. Thanks! New GLSA request filed. This issue was resolved and addressed in GLSA 202107-17 at https://security.gentoo.org/glsa/202107-17 by GLSA coordinator John Helmert III (ajak). |