A vulnerability was found in rest-client gem 1.6.13 for Ruby, as distributed on RubyGems.org, included a code-execution backdoor inserted by a third party. Reference: https://rubygems.org/gems/rest-client/versions/ https://github.com/rest-client/rest-client/issues/713
Created rubygem-rest-client tracking bugs for this issue: Affects: epel-7 [bug 1743942]
Statement: OpenShift Container Platform is not vulnerable to this issue as it does not use the affected versions.
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2019-15224