Inappropriate coding practices In nokogiri
Description
multiple issues
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
rubygems | >=0 <1.11.4 | 1.11.4 | |
alpine v3.18 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.10-r5 || =2.9.10-r6 || =2.9.10-r7 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.11-r0 | 2.9.11-r0 | |
alpine v3.19 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.10-r5 || =2.9.10-r6 || =2.9.10-r7 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.11-r0 | 2.9.11-r0 | |
alpine v3.21 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.10-r5 || =2.9.10-r6 || =2.9.10-r7 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.11-r0 | 2.9.11-r0 | |
nuget | >=0 <2.9.11 | - | |
alpine v3.11 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.10-r5 | 2.9.10-r5 | |
alpine v3.12 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.10-r5 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.10-r6 | 2.9.10-r6 | |
alpine v3.13 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.10-r5 || =2.9.10-r6 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.10-r7 | 2.9.10-r7 | |
alpine v3.14 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.10-r5 || =2.9.10-r6 || =2.9.10-r7 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.11-r0 | 2.9.11-r0 | |
alpine v3.15 | =2.7.2-r0 || =2.7.3-r0 || =2.7.6-r0 || =2.7.6-r1 || =2.7.6-r2 || =2.7.6-r3 || =2.7.7-r0 || =2.7.7-r1 || =2.7.7-r2 || =2.7.7-r3 || =2.7.7-r4 || =2.7.8-r0 || =2.7.8-r1 || =2.7.8-r2 || =2.7.8-r4 || =2.7.8-r5 || =2.7.8-r6 || =2.7.8-r7 || =2.7.8-r8 || =2.8.0-r0 || =2.8.0-r1 || =2.9.0-r0 || =2.9.0-r1 || =2.9.0-r2 || =2.9.0-r3 || =2.9.1-r0 || =2.9.1-r1 || =2.9.1-r2 || =2.9.10-r0 || =2.9.10-r1 || =2.9.10-r2 || =2.9.10-r3 || =2.9.10-r4 || =2.9.10-r5 || =2.9.10-r6 || =2.9.10-r7 || =2.9.2-r0 || =2.9.2-r1 || =2.9.2-r2 || =2.9.3-r0 || =2.9.4-r0 || =2.9.4-r1 || =2.9.4-r2 || =2.9.4-r3 || =2.9.4-r4 || =2.9.5-r0 || =2.9.6-r0 || =2.9.6-r2 || =2.9.7-r0 || =2.9.7-r1 || =2.9.8-r0 || =2.9.8-r1 || =2.9.8-r2 || =2.9.9-r0 || =2.9.9-r1 || =2.9.9-r2 || =2.9.9-r3 || >=0 <2.9.11-r0 | 2.9.11-r0 |
1-10 of 26
10
Aliases
References
1. https://www.oracle.com/security-alerts/cpuoct2021.html2. https://www.oracle.com/security-alerts/cpujul2022.html3. https://www.oracle.com/security-alerts/cpuapr2022.html4. https://support.apple.com/kb/HT2126055. https://support.apple.com/kb/HT2126046. https://support.apple.com/kb/HT2126027. https://support.apple.com/kb/HT2126018. https://security.netapp.com/advisory/ntap-20210625-00029. https://nokogiri.org/CHANGELOG.html#1114-2021-05-1410. https://lists.fedoraproject.org/archives/list/[email protected]/message/QVM4UJ3376I6ZVOYMHBNX4GY3NIV52WV11. https://lists.fedoraproject.org/archives/list/[email protected]/message/BZOMV5J4PMZAORVT64BKLV6YIZAFDGX612. https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4@%3Cissues.bookkeeper.apache.org%3E13. https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b@%3Cissues.bookkeeper.apache.org%3E14. https://github.com/sparklemotion/nokogiri/blob/2edbbef95f1dc12c1ddc5ebda71b9159026245fe/CHANGELOG.md?plain=1#L72215. https://github.com/rubysec/ruby-advisory-db/blob/master/gems/nokogiri/CVE-2021-3518.yml16. https://bugzilla.redhat.com/show_bug.cgi?id=195424217. http://seclists.org/fulldisclosure/2021/Jul/5418. http://seclists.org/fulldisclosure/2021/Jul/5519. http://seclists.org/fulldisclosure/2021/Jul/5820. http://seclists.org/fulldisclosure/2021/Jul/5921. https://lists.fedoraproject.org/archives/list/[email protected]/message/QVM4UJ3376I6ZVOYMHBNX4GY3NIV52WV/22. https://lists.fedoraproject.org/archives/list/[email protected]/message/BZOMV5J4PMZAORVT64BKLV6YIZAFDGX6/23. https://security.netapp.com/advisory/ntap-20210625-0002/
Does your application use this vulnerable software?
During the free trial, our tools assess your application, identify vulnerabilities, and provide recommendations for their remediation.