[ All 3 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ]
×

Package rubygem-rexml-3.4.4-11.el10_1.noarch download

Name rubygem-rexml
Epoch 0
Version 3.4.4
Release 11.el10_1
Architecture noarch
Website/URL https://github.com/ruby/rexml
License BSD-2-Clause
Build Time 2025-12-12 18:49:25
Build Host builder-x86-03.inferitos.ru
Summary An XML toolkit for Ruby
Repositories AppStream
Description REXML was inspired by the Electric XML library for Java, which features an easy-to-use API, small size, and speed. Hopefully, REXML, designed with the same philosophy, has these same features. I've tried to keep the API as intuitive as possible, and have followed the Ruby methodology for method naming and code flow, rather than mirroring the Java API. REXML supports both tree and stream document parsing. Stream parsing is faster (about 1.5 times as fast). However, with stream parsing, you don't get access to features such as XPath.
Errata
Size 120 KiB
Source Project ruby-3.3.10-11.el10_1
SHA-256 checksum 9de57353ac629cb5c251e27e41fd3c68d528f08c151d7ca25f0f7e5a88b9587d
× Full screenshot
Changelog link
* Thu Nov 13 2025 Jun Aruga <jaruga@redhat.com> - 3.3.10-11
- Upgrade to Ruby 3.3.10.
  Resolves: RHEL-130160
- Fix possible denial of service in resolv gem (CVE-2025-24294)
- Fix URI Credential Leakage Bypass previous fixes. (CVE-2025-61594)
- Fix REXML denial of service. (CVE-2025-58767)
  Resolves: RHEL-122028

* Tue May 27 2025 MSVSphere Packaging Team <packager@msvsphere-os.ru> - 3.3.8-10
- Rebuilt for MSVSphere 10

* Mon Apr 14 2025 Jarek Prokop <jprokop@redhat.com> - 3.3.8-10
- Upgrade to Ruby 3.3.8.
  Resolves: RHEL-87342
- Fix Net::IMAP vulnerable to possible DoS by memory exhaustion. (CVE-2025-25186)
- Fix Denial of Service in CGI::Cookie.parse. (CVE-2025-27219)
  Resolves: RHEL-86116
- Fix userinfo leakage in URI#join, URI#merge and URI#+. (CVE-2025-27221)

* Thu Jan 30 2025 Jun Aruga <jaruga@redhat.com> - 3.3.7-9
- Upgrade to Ruby 3.3.7
  Resolves: RHEL-77994
- Fix Ruby OpenSSL to respect crypto-policies TLS minimal version.
  Resolves: RHEL-21019

* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com>
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

* Wed Sep 04 2024 Jarek Prokop <jprokop@redhat.com> - 3.3.5-7
- Upgrade to Ruby 3.3.5
  Resolves: RHEL-59035
- Fix DoS vulnerability in rexml.
  (CVE-2024-39908)
  (CVE-2024-41946)
  (CVE-2024-43398)
  Resolves: RHEL-57047
  Resolves: RHEL-57059
  Resolves: RHEL-57070
- Fix REXML DoS when parsing an XML having many specific characters such as
  whitespace character, >] and ]>.
  (CVE-2024-41123)
  Resolves: RHEL-52802

* Mon Jun 24 2024 Troy Dawson <tdawson@redhat.com>
- Bump release for June 2024 mass rebuild

* Thu May 09 2024 Jun Aruga <jaruga@redhat.com> - 3.3.1-5
- Upgrade to Ruby 3.3.1.
  Resolves: RHEL-33975
- Fix buffer overread vulnerability in StringIO.
  Resolves: RHEL-34124
- Fix RCE vulnerability with .rdoc_options in RDoc.
  Resolves: RHEL-34116
- Fix arbitrary memory address read vulnerability with Regex search.
  Resolves: RHEL-33866

* Fri Jan 26 2024 Jarek Prokop <jprokop@redhat.com> - 3.3.0-4
- Do not set AI_ADDRCONFIG by default when calling getaddrinfo(3).

* Mon Jan 22 2024 Fedora Release Engineering <releng@fedoraproject.org>
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild