[ubuntu/quantal-updates] ruby1.8 1.8.7.358-4ubuntu0.2 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Mon Mar 25 17:59:22 UTC 2013


ruby1.8 (1.8.7.358-4ubuntu0.2) quantal-security; urgency=low

  * SECURITY UPDATE: REXML entity expansion DoS
    - debian/patches/CVE-2013-1821.patch: set an expansion limit in
      lib/rexml/document.rb, lib/rexml/text.rb, added test to
      test/rexml/test_document.rb.
    - Patch taken from Debian's 1.8.7.358-7
    - CVE-2013-1821

Date: 2013-03-22 19:00:23.177029+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/quantal/+source/ruby1.8/1.8.7.358-4ubuntu0.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Quantal-changes mailing list