{
  "schema_version": "1.7.0",
  "id": "RHSA-2014:1911",
  "related": [],
  "upstream": [
    "CVE-2014-8080",
    "CVE-2014-8090"
  ],
  "published": "2024-09-13T09:20:35Z",
  "modified": "2026-05-19T10:01:35Z",
  "summary": "Red Hat Security Advisory: ruby security update",
  "affected": [
    {
      "package": {
        "name": "ruby",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-devel",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-docs",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-irb",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-irb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-libs",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-libs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-rdoc",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-rdoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-ri",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-ri"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-static",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-static"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-tcltk",
        "ecosystem": "Red Hat:enterprise_linux:6::client",
        "purl": "pkg:rpm/redhat/ruby-tcltk"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-devel",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-docs",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-irb",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-irb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-libs",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-libs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-rdoc",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-rdoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-ri",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-ri"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-static",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-static"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-tcltk",
        "ecosystem": "Red Hat:enterprise_linux:6::computenode",
        "purl": "pkg:rpm/redhat/ruby-tcltk"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-devel",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-docs",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-irb",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-irb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-libs",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-libs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-rdoc",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-rdoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-ri",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-ri"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-static",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-static"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-tcltk",
        "ecosystem": "Red Hat:enterprise_linux:6::server",
        "purl": "pkg:rpm/redhat/ruby-tcltk"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-devel",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-docs",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-irb",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-irb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-libs",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-libs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-rdoc",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-rdoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-ri",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-ri"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-static",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-static"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ruby-tcltk",
        "ecosystem": "Red Hat:enterprise_linux:6::workstation",
        "purl": "pkg:rpm/redhat/ruby-tcltk"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.8.7.374-3.el6_6"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2014:1911"
    },
    {
      "type": "ARTICLE",
      "url": "https://access.redhat.com/security/updates/classification/#moderate"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1157709"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1159927"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2014/rhsa-2014_1911.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2014-8080"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2014-8080"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8080"
    },
    {
      "type": "ARTICLE",
      "url": "https://www.ruby-lang.org/en/news/2014/10/27/rexml-dos-cve-2014-8080/"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2014-8090"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2014-8090"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8090"
    },
    {
      "type": "ARTICLE",
      "url": "https://www.ruby-lang.org/en/news/2014/11/13/rexml-dos-cve-2014-8090/"
    }
  ]
}