MGASA-2015-0178
Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 03 May 2015, 00:19
Last modified:16 Apr 2026, 06:23
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
03 May 2015, 00:19
Published
Vulnerability first disclosed
16 Apr 2026, 06:23
Last Modified
Vulnerability information updated
Description
Updated ruby packages fix CVE-2015-1855 Updated ruby packages fix security vulnerability: Ruby OpenSSL hostname matching implementation violates RFC 6125 (CVE-2015-1855). The ruby package has been updated to version 2.0.0-p645, which fixes this issue.
Affected Systems
- mageia•ruby
< 2.0.0.p645-1.mga4
References (5)
- https://advisories.mageia.org/MGASA-2015-0178.html
- https://bugs.mageia.org/show_bug.cgi?id=15699
- https://www.ruby-lang.org/en/news/2015/04/13/ruby-openssl-hostname-matching-vulnerability/
- https://www.ruby-lang.org/en/news/2015/04/13/ruby-2-0-0-p645-released/
- https://lists.fedoraproject.org/pipermail/package-announce/2015-April/156431.html