UbuntuUpdates.org

Package "ruby3.3"

Name: ruby3.3

Description:

Interpreter of object-oriented scripting language Ruby

Latest version: 3.3.8-2ubuntu2.1
Release: questing (25.10)
Level: updates
Repository: main
Homepage: https://www.ruby-lang.org/

Links


Download "ruby3.3"


Other versions of "ruby3.3" in Questing

Repository Area Version
base main 3.3.8-2ubuntu2
security main 3.3.8-2ubuntu2.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 3.3.8-2ubuntu2.1 2026-04-01 05:09:27 UTC

  ruby3.3 (3.3.8-2ubuntu2.1) questing-security; urgency=medium

  * SECURITY UPDATE: credential leak in URI gem
    - debian/patches/CVE-2025-61594*.patch: adds an authority accessor and
      totally clears user info after the setting any of authority info in
      lib/uri/generic.rb.
    - CVE-2025-61594

 -- Ian Constantin <email address hidden> Mon, 23 Mar 2026 14:43:19 +0200

CVE-2025-61594 URI is a module providing classes to handle Uniform Resource Identifiers. In versions prior to 0.12.5, 0.13.3, and 1.0.4, a bypass exists for the fix



About   -   Send Feedback to @ubuntu_updates