|Category:||Debian Local Security Checks|
|Title:||Debian: Security Advisory for rails (DSA-4766-1)|
|Summary:||The remote host is missing an update for the 'rails'; package(s) announced via the DSA-4766-1 advisory.|
The remote host is missing an update for the 'rails'
package(s) announced via the DSA-4766-1 advisory.
Multiple security issues were discovered in the Rails web framework
which could result in cross-site scripting, information leaks, code
execution, cross-site request forgery or bypass of upload limits.
'rails' package(s) on Debian Linux.
For the stable distribution (buster), these problems have been fixed in
We recommend that you upgrade your rails packages.
Common Vulnerability Exposure (CVE) ID: CVE-2020-8162|
Debian Security Information: DSA-4766 (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2020-8164
SuSE Security Announcement: openSUSE-SU-2020:1533 (Google Search)
SuSE Security Announcement: openSUSE-SU-2020:1536 (Google Search)
SuSE Security Announcement: openSUSE-SU-2020:1575 (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2020-8165
Common Vulnerability Exposure (CVE) ID: CVE-2020-8166
Common Vulnerability Exposure (CVE) ID: CVE-2020-8167
|Copyright||Copyright (C) 2020 Greenbone Networks GmbH|
|This is only one of 85075 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.