SUSE 5149 Published by

SUSE Linux has received two security updates, which include ruby3.3 and httpcomponents-client:

openSUSE-SU-2024:14479-1: moderate: ruby3.3-rubygem-rails-7.0-7.0.8.6-1.1 on GA media
openSUSE-SU-2024:14478-1: moderate: httpcomponents-client-4.5.14-1.1 on GA media




openSUSE-SU-2024:14479-1: moderate: ruby3.3-rubygem-rails-7.0-7.0.8.6-1.1 on GA media


# ruby3.3-rubygem-rails-7.0-7.0.8.6-1.1 on GA media

Announcement ID: openSUSE-SU-2024:14479-1
Rating: moderate

Cross-References:

* CVE-2024-41128
* CVE-2024-47887
* CVE-2024-47888
* CVE-2024-47889

CVSS scores:

* CVE-2024-41128 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
* CVE-2024-47887 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
* CVE-2024-47889 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected Products:

* openSUSE Tumbleweed

An update that solves 4 vulnerabilities can now be installed.

## Description:

These are all security issues fixed in the ruby3.3-rubygem-rails-7.0-7.0.8.6-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* ruby3.3-rubygem-rails-7.0 7.0.8.6-1.1

## References:

* https://www.suse.com/security/cve/CVE-2024-41128.html
* https://www.suse.com/security/cve/CVE-2024-47887.html
* https://www.suse.com/security/cve/CVE-2024-47888.html
* https://www.suse.com/security/cve/CVE-2024-47889.html



openSUSE-SU-2024:14478-1: moderate: httpcomponents-client-4.5.14-1.1 on GA media


# httpcomponents-client-4.5.14-1.1 on GA media

Announcement ID: openSUSE-SU-2024:14478-1
Rating: moderate

Cross-References:

* CVE-2020-13956

CVSS scores:

* CVE-2020-13956 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N

Affected Products:

* openSUSE Tumbleweed

An update that solves one vulnerability can now be installed.

## Description:

These are all security issues fixed in the httpcomponents-client-4.5.14-1.1 package on the GA media of openSUSE Tumbleweed.

## Package List:

* openSUSE Tumbleweed:
* httpcomponents-client 4.5.14-1.1
* httpcomponents-client-cache 4.5.14-1.1
* httpcomponents-client-javadoc 4.5.14-1.1

## References:

* https://www.suse.com/security/cve/CVE-2020-13956.html