[ All 3 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ]
×

Package rubygem-rexml-3.2.5-165.el9_5.noarch download

Name rubygem-rexml
Epoch 0
Version 3.2.5
Release 165.el9_5
Architecture noarch
Website/URL https://github.com/ruby/rexml
License BSD
Build Time 2025-05-07 09:06:12
Build Host builder-x86-07.inferitos.ru
Summary An XML toolkit for Ruby
Repositories AppStream
Description REXML was inspired by the Electric XML library for Java, which features an easy-to-use API, small size, and speed. Hopefully, REXML, designed with the same philosophy, has these same features. I've tried to keep the API as intuitive as possible, and have followed the Ruby methodology for method naming and code flow, rather than mirroring the Java API. REXML supports both tree and stream document parsing. Stream parsing is faster (about 1.5 times as fast). However, with stream parsing, you don't get access to features such as XPath.
Errata INFSA-2025:4487
Size 107 KiB
Source Project ruby-3.0.7-165.el9_5
SHA-256 checksum 2cd25b23ef0e65305a5c8a26d67cdeeb6dc622b11171bc1977e364ad9cb8eab9
× Full screenshot
Changelog link
* Fri Apr 11 2025 Jarek Prokop <jprokop@redhat.com> - 3.0.7-165
- Fix Denial of Service in CGI::Cookie.parse. (CVE-2025-27219)
  Resolves: RHEL-87183
- Fix ReDoS in CGI::Util#escapeElement. (CVE-2025-27220)
  Resolves: RHEL-87184

* Thu Mar 06 2025 Jarek Prokop <jprokop@redhat.com> - 3.0.7-164
- Undefine GC compaction methods on ppc64le.
  Resolves: RHEL-83135
- Fix printing warnings when using IRB from a script.
  Resolves: RHEL-83137

* Tue Nov 26 2024 Jarek Prokop <jprokop@redhat.com> - 3.0.7-163
- Fix REXML ReDoS vulnerability. (CVE-2024-49761)
  Resolves: RHEL-68521

* Tue Apr 30 2024 Jun Aruga <jaruga@redhat.com> - 3.0.7-162
- Upgrade to Ruby 3.0.7.
  Resolves: RHEL-35740
- Fix HTTP response splitting in CGI.
  Resolves: RHEL-35741
- Fix ReDoS vulnerability in URI.
  Resolves: RHEL-35742
- Fix ReDoS vulnerability in Time.
  Resolves: RHEL-35743
- Fix buffer overread vulnerability in StringIO.
  Resolves: RHEL-35744
- Fix RCE vulnerability with .rdoc_options in RDoc.
  Resolves: RHEL-35746
- Fix arbitrary memory address read vulnerability with Regex search.
  Resolves: RHEL-35747

* Mon Oct 09 2023 Jun Aruga <jaruga@redhat.com> - 3.0.4-161
- Fix OpenSSL.fips_mode and OpenSSL::PKey.read in OpenSSL 3 FIPS.
  Resolves: RHEL-12724
- ssl: use ffdhe2048 from RFC 7919 as the default DH group parameters
  Related: RHEL-12724

* Wed Jun 28 2023 Jun Aruga <jaruga@redhat.com> - 3.0.4-160
- Bypass git submodule test failure on Git >= 2.38.1.
- Fix tests with Europe/Amsterdam pre-1970 time on tzdata version 2022b.
- Fix for tzdata-2022g.
- Fix File.utime test.