VYPR

rpm package

opensuse/rubygem-excon&distro=openSUSE Leap 15.1

pkg:rpm/opensuse/rubygem-excon&distro=openSUSE%20Leap%2015.1

Vulnerabilities (1)

  • CVE-2019-16779Dec 16, 2019
    affected < 0.59.0-lp151.3.3.1fixed 0.59.0-lp151.3.3.1

    In RubyGem excon before 0.71.0, there was a race condition around persistent connections, where a connection which is interrupted (such as by a timeout) would leave data on the socket. Subsequent requests would then read this data, returning content from the previous response. Th