{"id":"MGASA-2013-0229","summary":"Updated ruby packages fix CVE-2013-4073","details":"A vulnerability in Ruby's SSL client that could allow man-in-the-middle\nattackers to spoof SSL servers via valid certificate issued by a trusted\ncertification authority (CVE-2013-4073).\n","modified":"2026-04-16T06:26:26.314878369Z","published":"2013-07-26T11:29:37Z","upstream":["CVE-2013-4073"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2013-0229.html"},{"type":"WEB","url":"http://www.ruby-lang.org/en/news/2013/06/27/hostname-check-bypassing-vulnerability-in-openssl-client-cve-2013-4073/"},{"type":"WEB","url":"http://www.ubuntu.com/usn/usn-1902-1/"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=10637"}],"affected":[{"package":{"name":"ruby","ecosystem":"Mageia:2","purl":"pkg:rpm/mageia/ruby?arch=source&distro=mageia-2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.8.7.p358-1.3.mga2"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2013-0229.json"}},{"package":{"name":"ruby","ecosystem":"Mageia:3","purl":"pkg:rpm/mageia/ruby?arch=source&distro=mageia-3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.9.3.p448-1.mga3"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2013-0229.json"}},{"package":{"name":"ruby-linecache19","ecosystem":"Mageia:3","purl":"pkg:rpm/mageia/ruby-linecache19?arch=source&distro=mageia-3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.5.13-5.1.mga3"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2013-0229.json"}},{"package":{"name":"ruby-ruby-debug-base19","ecosystem":"Mageia:3","purl":"pkg:rpm/mageia/ruby-ruby-debug-base19?arch=source&distro=mageia-3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.11.26-5.1.mga3"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2013-0229.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}