[ubuntu/precise-security] ruby1.9.1 1.9.3.0-1ubuntu2.4 (Accepted)

Tyler Hicks tyhicks at canonical.com
Mon Oct 22 23:31:16 UTC 2012


ruby1.9.1 (1.9.3.0-1ubuntu2.4) precise-security; urgency=low

  * SECURITY UPDATE: Missing input sanitization of file paths
    - debian/patches/CVE-2012-4522.patch: NUL characters are not
      valid filename characters, so ensure that Ruby strings used for file
      paths do not contain NUL characters. Based on upstream patch.

Date: 2012-10-16 20:40:12.658483+00:00
Changed-By: Tyler Hicks <tyhicks at canonical.com>
https://launchpad.net/ubuntu/precise/+source/ruby1.9.1/1.9.3.0-1ubuntu2.4
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list