It was discovered that Doorkeeper incorrectly performed authorization checks for public clients that have been previous approved. An attacker could potentially exploit these in order to impersonate another user and obtain sensitive information.
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "2.2.1-1ubuntu0.1~esm1", "binary_name": "ruby-doorkeeper" } ] }
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "4.3.1-1ubuntu0.1~esm1", "binary_name": "ruby-doorkeeper" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "5.0.2-2ubuntu0.1", "binary_name": "ruby-doorkeeper" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "5.5.0-2ubuntu0.22.04.1", "binary_name": "ruby-doorkeeper" } ] }