Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2024-27280 #158

Closed
mvach opened this issue Apr 9, 2024 · 1 comment
Closed

CVE-2024-27280 #158

mvach opened this issue Apr 9, 2024 · 1 comment

Comments

@mvach
Copy link
Contributor

mvach commented Apr 9, 2024

The AWS CPI seems to be affected by https://www.ruby-lang.org/en/news/2024/03/21/buffer-overread-cve-2024-27280
Even though the issue doesn't seem to be critical we should update the used Ruby version to 3.2.3

@beyhan
Copy link
Member

beyhan commented Apr 11, 2024

fixed with #159

@beyhan beyhan closed this as completed Apr 11, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Development

No branches or pull requests

2 participants