Headline
RHSA-2021:0937: Red Hat Security Advisory: rubygem-em-http-request security update
An update for rubygem-em-http-request is now available for Red Hat OpenStack Platform 13 (Queens). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.EventMachine based, async HTTP Request client. Security Fix(es):
- missing SSL hostname validation allows MITM (CVE-2020-13482) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Related CVEs:
- CVE-2020-13482: rubygem-em-http-request: missing SSL hostname validation allows MITM