Package
ruby-3.3-base-dev
Component
resolv
Latest update
5.3
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Impact
The resolv gem at version 0.3.0 is included as a default gem in Ruby's standard library. The fix for this CVE requires updating resolv to include security patches. Ruby upstream has an open PR (https://github.com/ruby/ruby/pull/13817) awaiting review to address this vulnerability. Once upstream maintainers approve the functional changes, this fix will be implemented in the ruby_3_3 branch.
Status