Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:20670: Important: ruby security update

A critical deserialization bypass vulnerability (CVE-2026-41316, CVSS 8.1 High) in the Ruby ERB component allows for arbitrary code execution. The vulnerability affects Ruby packages for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions, specifically the ruby-3.0.4-160.2.el9_0 update. Red Hat has released patched packages to remediate this issue.
Read Full Article →

Red Hat Product Errata RHSA-2026:20670 - Security Advisory Issued: 2026-05-26 Updated: 2026-05-26 RHSA-2026:20670 - Security Advisory Overview Updated Packages Synopsis Important: ruby security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for ruby is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks. Security Fix(es): erb: ERB: Arbitrary code execution via deserialization bypass (CVE-2026-41316) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x Fixes BZ - 2461369 - CVE-2026-41316 erb: ERB: Arbitrary code execution via deserialization bypass CVEs CVE-2026-41316 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 SRPM ruby-3.0.4-160.2.el9_0.src.rpm SHA-256: 5d6362d5bc1187e7ab8f49b5bf12415075aecafaa5650ad27b1aec2ded61cd7d ppc64le ruby-3.0.4-160.2.el9_0.ppc64le.rpm SHA-256: 94db7279e8fddfcf845fadaeab2743635f0157e446e41d56230039a7d7e5b72c ruby-debuginfo-3.0.4-160.2.el9_0.ppc64le.rpm SHA-256: 1c9265b92303eef26b7ad56cf827432768dfd9ed4f1b6a16f5fc1043285c70e9 ruby-debugsource-3.0.4-160.2.el9_0.ppc64le.rpm SHA-256: 7366dd4d0bc442f3ae69166fae84c3b53d6174dab60ba397fe98bb32d3b2310d ruby-default-gems-3.0.4-160.2.el9_0.noarch.rpm SHA-256: 6ea7390e4e45656fc3dde88fae248aa310c43bc392b1cb17afe96db87cf9b1b6 ruby-devel-3.0.4-160.2.el9_0.ppc64le.rpm SHA-256: 2e3e6f6a71857a3b46a4a592c68642cfaf1130bde0a501438993525d45ec95a3 ruby-libs-3.0.4-160.2.el9_0.ppc64le.rpm SHA-256: 56fe96f07012db4acb08307cab86e3ca3d994ac5bddb84d309bc6d2b522ddc3a ruby-libs-debuginfo-3.0.4-160.2.el9_0.ppc64le.rpm SHA-256: bea26f57c620dc9111723e9f3e835ca75f52bb06e4be03d34697b2f1bee2ec91 rubygem-bigdecimal-3.0.0-160.2.el9_0.ppc64le.rpm SHA-256: 24daf776a487e8d53e29e0afe9e973f6cea95bd1f953a4ec6353ede6629640ed rubygem-bigdecimal-debuginfo-3.0.0-160.2.el9_0.ppc64le.rpm SHA-256: 6e7783bf7d27e4a514bb82dd3d1cf3285cace5b278e4921fcba9b09db4343af8 rubygem-bundler-2.2.33-160.2.el9_0.noarch.rpm SHA-256: 519805864169497d1a0dba3d710a9008c564e933cab4a64fafc656294976480c rubygem-io-console-0.5.7-160.2.el9_0.ppc64le.rpm SHA-256: 19acc601b59352f2bd1606d0bef8bec0bcb7b710c7137c3aa3fb9fe2e2cccfd4 rubygem-io-console-debuginfo-0.5.7-160.2.el9_0.ppc64le.rpm SHA-256: 84960135f00e5990f73943dd0967e4581ed7da56874e9a44573e5092b15c9f5c rubygem-irb-1.3.5-160.2.el9_0.noarch.rpm SHA-256: 51f39b7bcd79f6ee29ec315eefc1e2d223a1ef47d429f41a43cd1b86cb260c93 rubygem-json-2.5.1-160.2.el9_0.ppc64le.rpm SHA-256: 363385b478f87f71f7517d2259fe559ccd935dcfcd59d92e6de3723d4d6d0a84 rubygem-json-debuginfo-2.5.1-160.2.el9_0.ppc64le.rpm SHA-256: 05176f820abfeb8b1b5bfd9b645a0da740e0f06ca25765e6fb403d062c27087c rubygem-minitest-5.14.2-160.2.el9_0.noarch.rpm SHA-256: c203ca6478cfcb80194259547704b6fb7ca4f97a7463428fd381dda766a62395 rubygem-power_assert-1.2.0-160.2.el9_0.noarch.rpm SHA-256: 6eb7f9b504d3050bfc43724ebceb496adab5d98901e04bd05cc2902adc289eb0 rubygem-psych-3.3.2-160.2.el9_0.ppc64le.rpm SHA-256: 30cec25ed718995c070519808b78c5caa0f986a893890a118cce7d88be6a82ba rubygem-psych-debuginfo-3.3.2-160.2.el9_0.ppc64le.rpm SHA-256: 483649574c56ddf9638f4d2a96c8d8f185d85c9b888ac29ccfe0f4f815669037 rubygem-rake-13.0.3-160.2.el9_0.noarch.rpm SHA-256: d0f2fa2c282d77a61ed3e7a37cfdf6b86e2f2ac61422fc57b51b1a38c0ddaed8 rubygem-rbs-1.4.0-160.2.el9_0.noarch.rpm SHA-256: cba4bf86d426cd9e30e11cda664cd503bf36030ed66a4d664f42138b99543f08 rubygem-rdoc-6.3.3-160.2.el9_0.noarch.rpm SHA-256: d1b98c1f6a38b6e4b4a67c9da749fdca25fc0d780f026206d4f69e019dfec836 rubygem-rexml-3.2.5-160.2.el9_0.noarch.rpm SHA-256: d1083ee2e46a5e09094b4e88f9bbccc37366794989db5dafb1cfaea786319333 rubygem-rss-0.2.9-160.2.el9_0.noarch.rpm SHA-256: 72abbea0083151197373bdaf87ab525072b06a4e68dba292d89c471aa0251cd8 rubygem-test-unit-3.3.7-160.2.el9_0.noarch.rpm SHA-256: 325439415010fd8c21aa04cde706d53ecacd6c831988505aa064c20b30809deb rubygem-typeprof-0.15.2-160.2.el9_0.noarch.rpm SHA-256: e307a465ac6c41355a6f999e08ec08a7192cdb29f614e5ade51567b5da6f243f rubygems-3.2.33-160.2.el9_0.noarch.rpm SHA-256: 11f867939c09537d7c05766015f6d27c9d36314aa3521d8bb46b11276a7b4e37 rubygems-devel-3.2.33-160.2.el9_0.noarch.rpm SHA-256: 7fa000962814c285a76a8530963f46ad9c35c2464707f115d078491a5c98fc8a Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 SRPM ruby-3.0.4-160.2.el9_0.src.rpm SHA-256: 5d6362d5bc1187e7ab8f49b5bf12415075aecafaa5650ad27b1aec2ded61cd7d x86_64 ruby-3.0.4-160.2.el9_0.i686.rpm SHA-256: 6bfcfa367565b255f86d7bd0b52f894083c2774dc6a563f6b44ba89997044e1d ruby-3.0.4-160.2.el9_0.x86_64.rpm SHA-256: c79606b6d2788cd8517ae0cf4265d470732e0253ae1bde0a3cd2f64b9c390a9d ruby-debuginfo-3.0.4-160.2.el9_0.i686.rpm SHA-256: d6f215a78e6daf3b792ea1d1ce7755d6de5a0eae0612b913f121241810b8c36f ruby-debuginfo-3.0.4-160.2.el9_0.x86_64.rpm SHA-256: cde72a1f7e7e1f9c4fafce7fa7e1d7785372313c64d7307500a5ee8f5dac2bb8 ruby-debugsource-3.0.4-160.2.el9_0.i686.rpm SHA-256: 13baa085e2a6aa38e54a68a870058332cce541b261b5ccae5b4c49c9ad864f02 ruby-debugsource-3.0.4-160.2.el9_0.x86_64.rpm SHA-256: 96834edc7d4e15d8ca42e558947d5f6aa2aafacb8f2ac152b032d503ea194804 ruby-default-gems-3.0.4-160.2.el9_0.noarch.rpm SHA-256: 6ea7390e4e45656fc3dde88fae248aa310c43bc392b1cb17afe96db87cf9b1b6 ruby-devel-3.0.4-160.2.el9_0.i686.rpm SHA-256: ec7c69d29244b32e86804493871732e2d1df87ca163caddb61737164acba3cc0 ruby-devel-3.0.4-160.2.el9_0.x86_64.rpm SHA-256: 355bf8ea18fd2b7ba8b02215658f4b5b8a132cb7e4e0fb53b0fb852fa25ec0a5 ruby-libs-3.0.4-160.2.el9_0.i686.rpm SHA-256: ec2485f36f4d992a06b882348337696e32d63bf7b5f48f7cbdc4d527a9765f98 ruby-libs-3.0.4-160.2.el9_0.x86_64.rpm SHA-256: 942af3cf346712bdeb20de123ca91d093b02394384daefbb63de3a29b2c25b75 ruby-libs-debuginfo-3.0.4-160.2.el9_0.i686.rpm SHA-256: e1ebfe5ffbe48d09fe8a81e1fc20de0b462701f610d9be8bfc880f674df6dde7 ruby-libs-debuginfo-3.0.4-160.2.el9_0.x86_64.rpm SHA-256: e0eb5ac04ff30cab675f848f88889660d15afb9f13fbfc198f899740aa5c3cfd rubygem-bigdecimal-3.0.0-160.2.el9_0.x86_64.rpm SHA-256: dd1b1e3ef37ac25bc193f724d295d65de656cee2656d79ad2e03d21afeca5726 rubygem-bigdecimal-debuginfo-3.0.0-160.2.el9_0.i686.rpm SHA-256: 52eb77e805331bee9daccc8f116380134d8779466271098671aa692e50457393 rubygem-bigdecimal-debuginfo-3.0.0-160.2.el9_0.x86_64.rpm SHA-256: 27b61a73e339073b3477cd5be79c1dbf874ae293cfc9c48bcc23cdd4df34c1b0 rubygem-bundler-2.2.33-160.2.el9_0.noarch.rpm SHA-256: 519805864169497d1a0dba3d710a9008c564e933cab4a64fafc656294976480c rubygem-io-console-0.5.7-160.2.el9_0.x86_64.rpm SHA-256: 4624ef7cbc8e9549327ba8db108052e140f7d16d2aa40a51050888a1e58103c6 rubygem-io-console-debuginfo-0.5.7-160.2.el9_0.i686.rpm SHA-256: 54ff9510eaaa651fa18b0e9ce2ef92892c95f2754523221e301382c3474ca41e rubygem-io-console-debuginfo-0.5.7-160.2.el9_0.x86_64.rpm SHA-256: c20c829dc4c36c860d7a61f7934aad4d3b2bf9e4658b6099b46f3bcd805b6427 rubygem-irb-1.3.5-160.2.el9_0.noarch.rpm SHA-256: 51f39b7bcd79f6ee29ec315eefc1e2d223a1ef47d429f41a43cd1b86cb260c93 rubygem-json-2.5.1-160.2.el9_0.x86_64.rpm SHA-256: 77021bd5a6d4fd2091685a703daa6e89228fb68782d64b9a341192958e6ef7d0 rubygem-json-debuginfo-2.5.1-160.2.el9_0.i686.rpm SHA-256: 6ff1a71b2a542d2d0df84c481f5c9bd7873d927ae2e4756fad39a29df31ec7e2 rubygem-json-debuginfo-2.5.1-160.2.el9_0.x86_64.rpm SHA-256: 246818c6866c1f7966b53645c7344aa88a9ac111ab9d07c8722f4911db561241 rubygem-minitest-5.14.2-160.2.el9_0.noarch.rpm SHA-256: c203ca6478cfcb80194259547704b6fb7ca4f97a7463428fd381dda766a62395 rubygem-power_assert-1.2.0-160.2.el9_0.noarch.rpm SHA-256: 6eb7f9b504d3050bfc43724ebceb496adab5d98901e04bd05cc2902adc289eb0 rubygem-psych-3.3.2-160.2.el9_0.x86_64.rpm SHA-256: 963c33d684156121107c73b6221a4fde6da6330cb3a1486d736f454fc0350271 rubygem-psych-debuginfo-3.3.2-160.2.el9_0.i686.rpm SHA-256: a1eea70e2113912181cfe820e436f94ea7cf67575c9055c6112ff8f3cf93e7ea rubygem-psych-debuginfo-3.3.2-160.2.el9_0.x86_64.rpm SHA-256: bf0f117f4282ed7c80a39c5e485a87be952000773a90b8161447a3d1726337a9 rubygem-rake-13.0.3-160.2.el9_0.noarch.rpm SHA-256: d0f2fa2c282d77a61ed3e7a37cfdf6b86e2f2ac61422fc57b51b1a38c0ddaed8 rubygem-rbs-1.4.0-160.2.el9_0.noarch.rpm SHA-256: cba4bf86d426cd9e30e11cda664cd503bf36030ed66a4d664f42138b99543f08 rubygem-rdoc-6.3.3-160.2.el9_0.noarch.rpm SHA-256: d1b98c1f6a38b6e4b4a67c9da749fdca25fc0d780f026206d4f69e019dfec836 rubygem-rexml-3.2.5-160.2.el9_0.noarch.rpm SHA-256: d1083ee2e46a5e09094b4e88f9bbccc37366794989db5dafb1cfaea786319333 rubygem-rss-0.2.9-160.2.el9_0.noarch.rpm SHA-256: 72abbea0083151197373bdaf87ab525072b06a4e68dba292d89c471aa0251cd8 rubygem-test-unit-3.3.7-160.2.el9_0.noarch.rpm SHA-256: 325439415010fd8c21aa04cde706d53ecacd6c831988505aa064c20b30809deb rubygem-typeprof-0.15.2-160.2.el9_0.noarch.rpm SHA-256: e307a465ac6c41355a6f999e

Share this article