DSA-6090-1

NameDSA-6090-1
Descriptionrails - security update
SourceDebian
ReferencesCVE-2025-24293, CVE-2025-55193

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
rails (PTS)bookworm2:6.1.7.10+dfsg-1~deb12u1vulnerable
bookworm (security)2:6.1.7.10+dfsg-1~deb12u2fixed
trixie2:7.2.2.1+dfsg-7vulnerable
trixie (security)2:7.2.2.2+dfsg-2~deb13u1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
railssourcebookworm2:6.1.7.10+dfsg-1~deb12u2
railssourcetrixie2:7.2.2.2+dfsg-2~deb13u1

Search for package or bug name: Reporting problems