Status
Impact
The resolv gem at version 0.3.0 is included as a default gem in Ruby's standard library. The fix for this CVE requires updating resolv to include security patches. Ruby upstream has an open PR (https://github.com/ruby/ruby/pull/13817) awaiting review to address this vulnerability. Once upstream maintainers approve the functional changes, this fix will be implemented in the ruby_3_3 branch.
Status