ELSA-2011-0908

ELSA-2011-0908 - ruby security update

Type:SECURITY
Impact:MODERATE
Release Date:2011-06-28

Description



[1.8.1-16.el4]
- Comply with guidelines
- Related: rhbz#709959

[1.8.1-15.el4]
- Address CVE-2011-1005 'Untrusted codes able to modify arbitrary strings'
* ruby-1.8.7-CVE-2011-1005.patch
- Address CVE-2011-0188 'memory corruption in BigDecimal on 64bit platforms'
* ruby-1.8.7-CVE-2011-0188.patch
- Address CVE-CVE-2010-0541 'Ruby WEBrick javascript injection flaw'
* ruby-1.8.7-CVE-2010-0541.patch
- Address CVE-CVE-2009-4492 'ruby WEBrick log escape sequence'
* ruby-1.8.6-CVE-2009-4492.patch
- Resolves: rhbz#709959


Related CVEs


CVE-2009-4492
CVE-2011-1005
CVE-2010-0541
CVE-2011-0188

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 4 (i386) ruby-1.8.1-16.el4.src.rpmc1f64f637cc2732ffc1bae9e6bcbf302aae7b45c12bc4f56ebdb9a13763403feELSA-2012-0070el4_i386_latest
irb-1.8.1-16.el4.i386.rpmfdad2c0f4f0e89c2b757ece3922fe50eb75cf81b62bdb5fe385d12a1aff583acELSA-2012-0070el4_i386_latest
ruby-1.8.1-16.el4.i386.rpm435db26360b1a9d137d6ad6ce712fadf0869f1e371f16e51e765134b61b3bc48ELSA-2012-0070el4_i386_latest
ruby-devel-1.8.1-16.el4.i386.rpm59829db9c77650610fe5b4e73f83355dda9d3f6e7555267c0cd46dcf1c2e65d5ELSA-2012-0070el4_i386_latest
ruby-docs-1.8.1-16.el4.i386.rpma9dbad4b4056e3a19a1bd15090916b82e5b56b2191fdee9a9e8e28a205591b46ELSA-2012-0070el4_i386_latest
ruby-libs-1.8.1-16.el4.i386.rpmcfe31ce6595754c73d41dad486d62bd925902f90767e5d7ac3c17b9d7f83d3feELSA-2012-0070el4_i386_latest
ruby-mode-1.8.1-16.el4.i386.rpm3c944f7bfa6582520079a50c3dbcfd497bfdbcc3b6f75162bd48f1d22c55f4a2ELSA-2012-0070el4_i386_latest
ruby-tcltk-1.8.1-16.el4.i386.rpmb09f372e20b7280703cd2e18b551224ae6ee6c9a6eb1cfed27cbc98db0ed7d6bELSA-2012-0070el4_i386_latest
Oracle Linux 4 (ia64) ruby-1.8.1-16.el4.src.rpmc1f64f637cc2732ffc1bae9e6bcbf302aae7b45c12bc4f56ebdb9a13763403feELSA-2012-0070el4_ia64_latest
irb-1.8.1-16.el4.ia64.rpmd27dc340163c242227ddb30887ffcef28233e331d5faa33330c7ce0f307d9475ELSA-2012-0070el4_ia64_latest
ruby-1.8.1-16.el4.ia64.rpm1dfb4b6d9d9b9dc625b52e42a92bd8887809ff7dcc5d77d17d0cdf6f0ed89499ELSA-2012-0070el4_ia64_latest
ruby-devel-1.8.1-16.el4.ia64.rpme21ad7cc4cc2098c895ce7305e1108972d0e681448441f6dcb5fa8adfe04ceaaELSA-2012-0070el4_ia64_latest
ruby-docs-1.8.1-16.el4.ia64.rpm245be402dc0bc29727f43764e19854e58976eea003e932678f923d5492824149ELSA-2012-0070el4_ia64_latest
ruby-libs-1.8.1-16.el4.i386.rpmcfe31ce6595754c73d41dad486d62bd925902f90767e5d7ac3c17b9d7f83d3feELSA-2012-0070el4_ia64_latest
ruby-libs-1.8.1-16.el4.ia64.rpm4db092ec840f9c81323157d9c259ec8594fa9be2faccfb240359728d040472d9ELSA-2012-0070el4_ia64_latest
ruby-mode-1.8.1-16.el4.ia64.rpm9a3fd88d99a88aa8f9c9d6b5935b330d59709c4cda3ff3fd4c912f3762cd2083ELSA-2012-0070el4_ia64_latest
ruby-tcltk-1.8.1-16.el4.ia64.rpma460b92957aa165ce00576e0cdaf7efd0898594cb687f982a1cb26b821d69761ELSA-2012-0070el4_ia64_latest
Oracle Linux 4 (x86_64) ruby-1.8.1-16.el4.src.rpmc1f64f637cc2732ffc1bae9e6bcbf302aae7b45c12bc4f56ebdb9a13763403feELSA-2012-0070el4_x86_64_latest
irb-1.8.1-16.el4.x86_64.rpme844be882793f1120a0f0e552f7e494147a72906818ee98f990942686f17fefbELSA-2012-0070el4_x86_64_latest
ruby-1.8.1-16.el4.x86_64.rpm143aabbfbbc83b1a88ff9cc3b4e3b57a0e5a7534898c9976246dbf05c4d383d7ELSA-2012-0070el4_x86_64_latest
ruby-devel-1.8.1-16.el4.x86_64.rpm885484f71dfaf2772f3dd9cec3123be3ad6c8a2740f052e6aa5e6cf58b6be38eELSA-2012-0070el4_x86_64_latest
ruby-docs-1.8.1-16.el4.x86_64.rpmf26eb659f507cfed9ee2ced093fa056383e9676f44e0ae8c52db5c1d7179776eELSA-2012-0070el4_x86_64_latest
ruby-libs-1.8.1-16.el4.i386.rpmcfe31ce6595754c73d41dad486d62bd925902f90767e5d7ac3c17b9d7f83d3feELSA-2012-0070el4_x86_64_latest
ruby-libs-1.8.1-16.el4.x86_64.rpm48915ccc3093c0953dde0e361b997057f4b7571f828d2333c4c347ffd636b7e2ELSA-2012-0070el4_x86_64_latest
ruby-mode-1.8.1-16.el4.x86_64.rpm27563e7b0078b01aba318dbd3effcca44d4805fb38c509e7edff8a1edfd9d653ELSA-2012-0070el4_x86_64_latest
ruby-tcltk-1.8.1-16.el4.x86_64.rpm538986985f99050f7d0d191023e794ad4462a0e42c9567b8d9b01e841e8fe11dELSA-2012-0070el4_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete