ELSA-2013-0612

ELSA-2013-0612 - ruby security update

Type:SECURITY
Severity:MODERATE
Release Date:2013-03-07

Description


[1.8.7.352-10]
- escaping vulnerability about Exception#to_s / NameError#to_s
* ruby-1.8.7-p371-CVE-2012-4481.patch
- Related: rhbz#915379

[1.8.7.352-9]
- Fix regression introduced by fix for entity expansion DOS vulnerability
in REXML (https://bugs.ruby-lang.org/issues/7961)
* ruby-2.0.0-add-missing-rexml-require.patch
- Related: rhbz#915379

[1.8.7.352-8]
- Addresses entity expansion DoS vulnerability in REXML.
* ruby-2.0.0-entity-expansion-DoS-vulnerability-in-REXML.patch
- Resolves: rhbz#915379


Related CVEs


CVE-2012-4481
CVE-2013-1821

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) ruby-1.8.7.352-10.el6_4.src.rpm75de23706a7434b392a4c852cffc8ef9ELBA-2017-0647
ruby-1.8.7.352-10.el6_4.i686.rpm927f244baefce392f75067d51d45e011ELBA-2017-0647
ruby-devel-1.8.7.352-10.el6_4.i686.rpm07e51a310ed86c09358681d9e3ba1472ELBA-2017-0647
ruby-docs-1.8.7.352-10.el6_4.i686.rpme8eda6a4e84cfa2066cf32e9ddfa7648ELBA-2017-0647
ruby-irb-1.8.7.352-10.el6_4.i686.rpm1815b9cae99b47f727af4c9d1cce31a2ELBA-2017-0647
ruby-libs-1.8.7.352-10.el6_4.i686.rpm76a6273098048e425453d79a275c0c9aELBA-2017-0647
ruby-rdoc-1.8.7.352-10.el6_4.i686.rpm032f12abb4766b5b2e6e03259bfafb20ELBA-2017-0647
ruby-ri-1.8.7.352-10.el6_4.i686.rpm52d9e451c30b91e19f712339b002fae2ELBA-2017-0647
ruby-static-1.8.7.352-10.el6_4.i686.rpmb44ea7684bb3784b58da0d1709e41146ELBA-2017-0647
ruby-tcltk-1.8.7.352-10.el6_4.i686.rpm80f0fda2f4914ba40c1c6460f650ef64ELBA-2017-0647
Oracle Linux 6 (x86_64) ruby-1.8.7.352-10.el6_4.src.rpm75de23706a7434b392a4c852cffc8ef9ELBA-2017-0647
ruby-1.8.7.352-10.el6_4.x86_64.rpme80eb4c51d468d2d4f2bbd77494b3b6cELBA-2017-0647
ruby-devel-1.8.7.352-10.el6_4.i686.rpm07e51a310ed86c09358681d9e3ba1472ELBA-2017-0647
ruby-devel-1.8.7.352-10.el6_4.x86_64.rpmc4183e258afe383dea3bd9ec1d665d28ELBA-2017-0647
ruby-docs-1.8.7.352-10.el6_4.x86_64.rpm5748ab743128005053f7b20b98a6abcaELBA-2017-0647
ruby-irb-1.8.7.352-10.el6_4.x86_64.rpmffce12a13758d3d2eff3388e45cf32f0ELBA-2017-0647
ruby-libs-1.8.7.352-10.el6_4.i686.rpm76a6273098048e425453d79a275c0c9aELBA-2017-0647
ruby-libs-1.8.7.352-10.el6_4.x86_64.rpmc18ca01f8181dd1d78c99e64dfeed039ELBA-2017-0647
ruby-rdoc-1.8.7.352-10.el6_4.x86_64.rpmfa099488f22a65a261d8a084521aed93ELBA-2017-0647
ruby-ri-1.8.7.352-10.el6_4.x86_64.rpm884ab916ff621f79fb86b88dfb8f3348ELBA-2017-0647
ruby-static-1.8.7.352-10.el6_4.x86_64.rpm9d7b3fb3824fdda9ba3dea19bcc4aec4ELBA-2017-0647
ruby-tcltk-1.8.7.352-10.el6_4.x86_64.rpm6f9293901cb4f88fdfb7a59cdef13a83ELBA-2017-0647



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete