CVE-2021-33621

medium
Published 2022-11-18 · Modified 2024-06-13
CVSS v3
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
VIR risk
5.5

Description

Moderate: ruby security update

Predictions

Exploit likelihood
30%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.

OS impact

OSVersionStatusFixed in
redhat rhel9fixed
rockylinux rocky8fixed
suse slesaffected
rockylinux rocky9fixed
debian debianbullseyefixed2.7.4-1+deb11u2
debian debianbookwormfixed3.1.2-4
almalinux almalinux9fixedrubygem-irb-1.4.1-143.module_el9.3.0+60+5ebc989a.noarch.rpm

Package impact

EcosystemPackageVulnerableFixed
ruby RubyGemscgi<~> 0.1.0.2~> 0.1.0.2
ruby RubyGemscgi>=0.3.0,<0.3.50.3.5
ruby RubyGemscgi>=0.2.0,<0.2.20.2.2
ruby RubyGemscgi<0.1.0.20.1.0.2

References

💬 Discuss CVE-2021-33621 on VIR Community →

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.