What the vendor says is affected
- azl3 ruby 3.3.5-6 on Azure Linux 3.0
- azl3 rubygem-rexml 3.3.9-2 on Azure Linux 3.0
- azl3 ruby 3.3.5-8 on Azure Linux 3.0
- azl3 ruby 3.3.5-5 on Azure Linux 3.0
- azl3 rubygem-rexml 3.3.9-1 on Azure Linux 3.0
- cbl2 ruby 3.1.7-3 on CBL Mariner 2.0
- azl3 ruby 3.3.5-7 on Azure Linux 3.0
Versions the vendor lists as fixed
- 3.3.9-2
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.