[DRE-maint] rubygems update

Sean Whitton spwhitton at spwhitton.name
Mon Mar 24 07:25:46 GMT 2025


Hello Antonio,

I'm looking at fixing CVE-2025-27221 as part of the Debian's LTS effort.

rubygems in sid has a vendored copy of the uri gem.  Updating the
version of rubygems in sid should resolve the CVE-2025-27221 for
rubygems in sid.

Do you think you'll be able to update rubygems in sid soon?  Or can I
perhaps help?

Thanks.

-- 
Sean Whitton
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 869 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-ruby-extras-maintainers/attachments/20250324/f3d97bd7/attachment.sig>


More information about the Pkg-ruby-extras-maintainers mailing list