openssl
OpenSSL for Ruby provides access to SSL/TLS and general-purpose cryptography based on the OpenSSL library.
Activity
- Latest release
- 4mo ago
- Total releases
- 43
- Cadence
- ~19 days
- Last 12 months
- 11
Reach
- Stars
- —
Details
- License
- unknown OR BSD-2-Clause
- First release
- Aug 29, 2016
| Version | Released | |
|---|---|---|
4.0.2
patch
| ||
3.2.4
patch
| ||
3.3.3
patch
| ||
4.0.1
patch
| ||
4.0.0
major
| ||
3.2.3
patch
| ||
3.3.2
patch
| ||
3.1.3
patch
| ||
3.1.2
patch
| ||
3.3.1
patch
| ||
3.2.2
patch
| ||
3.3.0
minor
| ||
3.1.1
patch
| ||
3.2.1
patch
| ||
3.0.3
patch
| ||
3.2.0
minor
| ||
3.0.2
patch
| ||
2.2.3
patch
| ||
3.1.0
minor
| ||
3.0.1
patch
| ||
2.2.2
patch
| ||
2.1.4
patch
| ||
3.0.0
major
| ||
2.2.1
patch
| ||
2.1.3
patch
| ||
2.2.0
minor
| ||
2.1.2
patch
| ||
2.0.9
patch
| ||
2.1.1
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.8
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.7
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.1.0
minor
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.1.0.beta2
pre
| ||
2.0.6
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.1.0.beta1
pre
| ||
2.0.5
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.4
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.3
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.2
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.1
patch
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.0
initial
1 CVE
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
2.0.0.beta.2
pre
3 CVEs
CVE-2017-14033
GHSA-v6rp-3r3v-hf4p
May 14, 2022
Ruby OpenSSL DoS Vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The decode method in the Affected versions
2.0.0.beta.1
2.0.0.beta.2
Fixed in
2.0.0
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev
CVE-2016-7798
GHSA-6h88-qjpv-p32m
Oct 24, 2017
OpenSSL gem for Ruby using inadequate encryption strength
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
The OpenSSL gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism. Affected versions
2.0.0.beta.1
2.0.0.beta.2
Fixed in
2.0.0
References
Updated Feb 16, 2024 · Source: OSV.dev | ||
2.0.0.beta.1
pre
3 CVEs
CVE-2017-14033
GHSA-v6rp-3r3v-hf4p
May 14, 2022
Ruby OpenSSL DoS Vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The decode method in the Affected versions
2.0.0.beta.1
2.0.0.beta.2
Fixed in
2.0.0
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2018-16395
GHSA-mmrq-6999-72v8
May 13, 2022
Ruby Openssl Allows Incorrect Value Comparison
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
An issue was discovered in the OpenSSL library in Ruby when two Affected versions
2.0.0
2.0.0.beta.1
2.0.0.beta.2
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.1.0
+ 1 more Show less
2.1.1
Fixed in
2.0.9
2.1.2
References
Updated Dec 03, 2024 · Source: OSV.dev
CVE-2016-7798
GHSA-6h88-qjpv-p32m
Oct 24, 2017
OpenSSL gem for Ruby using inadequate encryption strength
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
The OpenSSL gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism. Affected versions
2.0.0.beta.1
2.0.0.beta.2
Fixed in
2.0.0
References
Updated Feb 16, 2024 · Source: OSV.dev |