Back to bug 909029

Who When What Removed Added
Kurt Seifried 2013-02-08 05:19:00 UTC CC security-response-team
Red Hat Bugzilla 2013-02-08 05:19:00 UTC Doc Type --- Bug Fix
Kurt Seifried 2013-02-08 05:19:14 UTC CC bkabrda, bkearney, bleanhar, ccoleman, cpelland, dajohnso, dmcphers, iboverma, jeckersb, jialiu, jneedle, jomara lmeyer, mcressma, mmccune, morazi, msuchy, sclewis, tkramer, vondruch
Kurt Seifried 2013-02-08 05:25:54 UTC Depends On 909031
Kurt Seifried 2013-02-08 05:29:19 UTC Depends On 909033
Kurt Seifried 2013-02-08 05:31:59 UTC Depends On 909035
Kurt Seifried 2013-02-08 05:32:53 UTC Depends On 909036
Tomas Hoger 2013-02-08 08:21:54 UTC Summary EMBARGOED CVE-2013-0269 Rubygems JSON: Denial of Service and SQL Injection EMBARGOED CVE-2013-0269 rubygem-json: Denial of Service and SQL Injection
Kurt Seifried 2013-02-11 19:59:15 UTC Group security, qe_staff
Summary EMBARGOED CVE-2013-0269 rubygem-json: Denial of Service and SQL Injection CVE-2013-0269 rubygem-json: Denial of Service and SQL Injection
Whiteboard impact=moderate,public=no,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,epel-all/rubygem-json=affected,fedora-all/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected sam-1/rubygem-json=affected,cloudformscommon-1/rubygem-json=affected,openshift-enterprise-1/rubygem-json=affected,mrg-2/rubygem-json=affected impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,epel-all/rubygem-json=affected,fedora-all/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected sam-1/rubygem-json=affected,cloudformscommon-1/rubygem-json=affected,openshift-enterprise-1/rubygem-json=affected,mrg-2/rubygem-json=affected
Tomas Hoger 2013-02-12 07:07:32 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,epel-all/rubygem-json=affected,fedora-all/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected sam-1/rubygem-json=affected,cloudformscommon-1/rubygem-json=affected,openshift-enterprise-1/rubygem-json=affected,mrg-2/rubygem-json=affected impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,epel-all/rubygem-json=affected
Tomas Hoger 2013-02-12 07:08:13 UTC CC lxtnow, mastahnke, mfojtik, tdawson
Tomas Hoger 2013-02-12 07:12:48 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,epel-all/rubygem-json=affected impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby123-ruby=new openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=new,epel-all/rubygem-json=affected
Tomas Hoger 2013-02-12 09:37:47 UTC Blocks 910299
Tomas Hoger 2013-02-12 09:57:48 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby123-ruby=new openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=new,epel-all/rubygem-json=affected impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby123-ruby=affected openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected
Tomas Hoger 2013-02-12 10:02:31 UTC Depends On 910313
Tomas Hoger 2013-02-12 10:02:46 UTC Depends On 910314
Tomas Hoger 2013-02-12 10:03:00 UTC Depends On 910315
Josef Stribny 2013-02-13 17:15:50 UTC CC jstribny
Ramon de C Valle 2013-02-28 15:48:57 UTC CC rcvalle
Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby123-ruby=affected openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby123-ruby=affected openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,cwe=CWE-502
Kurt Seifried 2013-03-23 00:53:27 UTC Blocks 925673
Kurt Seifried 2013-03-27 19:04:59 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby123-ruby=affected openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,cwe=CWE-502 impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,cwe=CWE-502
Mark J. Cox 2013-03-28 10:10:38 UTC CC mjc
Vincent Danen 2013-06-13 15:01:51 UTC Depends On 974094
Vincent Danen 2013-06-13 15:07:38 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,cwe=CWE-502 impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cwe=CWE-502,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,fedora-rawhide/jruby=affected,jboss/jruby=affected
Vincent Danen 2013-06-13 15:08:18 UTC CC bhu, clalancette, esammons, jeremy, jross, kanarip, katello-bugs, katello-internal, matt, mgoldman, mmorsi, mrg-program-list, mtasaka, tagoh, weli, williams
Arun Babu Neelicattu 2013-06-26 05:08:27 UTC Blocks 978151
Arun Babu Neelicattu 2013-06-26 05:23:45 UTC CC aneelica
Arun Babu Neelicattu 2013-06-26 05:30:05 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cwe=CWE-502,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,fedora-rawhide/jruby=affected,jboss/jruby=affected impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cwe=CWE-502,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,fedora-rawhide/jruby=affected,jboss/fuse-entesb-7=affected,jboss/fuse-6=affected,jboss/dsp-5.3.0=wontfix,soap-4.3/jruby=wontfix,soap-5/jruby=affected,jboss/others=notaffected
Arun Babu Neelicattu 2013-06-26 05:31:25 UTC CC jbpapp-maint, soa-p-jira
Arun Babu Neelicattu 2013-06-26 05:32:59 UTC Depends On 978171
Katello Internal Mailing List 2013-06-26 05:44:29 UTC CC katello-internal
Megan Lewis 2013-06-26 05:45:19 UTC CC katello-internal, melewis
Megan Lewis 2013-06-26 05:46:10 UTC CC melewis
David Jorm 2013-06-27 05:13:49 UTC Blocks 958335
David Jorm 2013-07-03 00:33:37 UTC Blocks 980652
Jan Lieskovsky 2013-07-09 18:12:54 UTC CC jlieskov
nwallace 2013-07-10 14:46:20 UTC CC nwallace, tcunning
David Jorm 2013-07-11 03:38:26 UTC Blocks 981152
Kurt Seifried 2013-07-26 06:21:42 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cwe=CWE-502,cloudformscommon-1/rubygem-json=affected,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,fedora-rawhide/jruby=affected,jboss/fuse-entesb-7=affected,jboss/fuse-6=affected,jboss/dsp-5.3.0=wontfix,soap-4.3/jruby=wontfix,soap-5/jruby=affected,jboss/others=notaffected impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cwe=CWE-502,cloudformscommon-1/rubygem-json=wontfix,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,fedora-rawhide/jruby=affected,jboss/fuse-entesb-7=affected,jboss/fuse-6=affected,jboss/dsp-5.3.0=wontfix,soap-4.3/jruby=wontfix,soap-5/jruby=affected,jboss/others=notaffected
Kurt Seifried 2013-08-10 03:49:08 UTC Depends On 995670
David Jorm 2013-08-30 00:15:32 UTC CC djorm
David Jorm 2013-09-03 04:56:26 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2013-09-03 00:56:26 UTC
Product Security DevOps Team 2019-09-29 13:00:23 UTC Whiteboard impact=moderate,public=20130211,reported=20130207,source=upstream,cvss2=7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P,cwe=CWE-502,cloudformscommon-1/rubygem-json=wontfix,sam-1/rubygem-json=affected,openshift-enterprise-1/ruby193-ruby=affected,openshift-enterprise-1/rubygem-json=affected,openshift-1/rubygem-json=affected,openshift-1/ruby193-rubygem-json=affected,mrg-2/rubygem-json=affected,fedora-all/rubygem-json=affected,fedora-all/ruby=affected,epel-all/rubygem-json=affected,fedora-rawhide/jruby=affected,jboss/fuse-entesb-7=affected,jboss/fuse-6=affected,jboss/dsp-5.3.0=wontfix,soap-4.3/jruby=wontfix,soap-5/jruby=affected,jboss/others=notaffected
Kazu Yoshida 2020-07-30 00:11:23 UTC CC sebastien.olivier
CC kyoshida
Kazu Yoshida 2020-07-30 00:16:47 UTC Flags needinfo?(security-response-team)
Yogendra Jog 2020-07-30 05:18:37 UTC CC ytale
Flags needinfo?(security-response-team) needinfo?(ytale)
Yogendra Jog 2020-07-30 05:40:07 UTC Comment 35 updated
Yogendra Jog 2020-07-30 06:19:32 UTC CC yjog
Yadnyawalk Tale 2020-07-30 17:42:35 UTC Flags needinfo?(ytale)
Yadnyawalk Tale 2020-07-30 17:45:05 UTC Comment 36 updated
Kazu Yoshida 2020-07-31 01:01:22 UTC Flags needinfo?(yjog)
Yadnyawalk Tale 2020-07-31 07:08:04 UTC CC bbuckingham, bcourt, btotty, hhudgeon, lzap, nmoumoul, rchan, rjerrido, sokeeffe, tbrisker
Flags needinfo?(yjog)
Tomer Brisker 2021-12-14 18:47:58 UTC CC tbrisker

Back to bug 909029