Summary:
An update for ruby is now available for EulerOS V2.0SP13(x86_64)
EulerOS Security has rated this update as having a security impact of Moderate.A Common Vunlnerability Scoring System(CVSS)base score, which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.General:
Ruby is the interpreted scripting language for quick and easy object-oriented programming. It has many features to process text files and to do system management tasks (as in Perl). It is simple, straight-forward, and extensible.
Security Fix(es):
URI is a module providing classes to handle Uniform Resource Identifiers. In versions prior to 0.12.5, 0.13.3, and 1.0.4, a bypass exists for the fix to CVE-2025-27221 that can expose user credentials. When using the + operator to combine URIs, sensitive information like passwords from the original URI can be leaked, violating RFC3986 and making applications vulnerable to credential exposure. Versions 0.12.5, 0.13.3, and 1.0.4 fix the issue.(CVE-2025-61594)Legal Disclaimer:
This document is provided on an "AS IS" basis and does not imply any kind of guarantee or warranty, either express or implied, including the warranties of merchantability or fitness for a particular purpose. In no event shall Huawei or any of its directly or indirectly controlled subsidiaries or its suppliers be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages. Your use of the document, by any means, is totally at your own risk. Huawei is entitled to amend or update this document from time to time. The information and data embodied in this document and any attachment are strictly confidential information of Huawei and are supplied on the understanding that they will be held confidentially and not disclosed to third parties without the prior written consent of Huawei. Use all reasonable efforts to protect the...
3.0.3-131.h13.eulerosv2r133.0.3-131.h13.eulerosv2r133.0.3-131.h13.eulerosv2r13did_you_mean-1.5.0-131.h13.eulerosv2r133.0.0-131.h13.eulerosv2r130.5.7-131.h13.eulerosv2r132.5.1-131.h13.eulerosv2r132.2.1-131.h13.eulerosv2r133.3.2-131.h13.eulerosv2r136.3.3-131.h13.eulerosv2r13Exploitability
AV:NAC:LPR:NUI:NScope
S:UImpact
C:HI:NA:N4.7/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N