ruby1.9.1 1.9.3.194-1ubuntu1.2 source package in Ubuntu

Changelog

ruby1.9.1 (1.9.3.194-1ubuntu1.2) quantal-security; urgency=low

  * SECURITY UPDATE: Safe level bypass
    - debian/patches/20121011-cve_2012_4464-cve_2012_4466.patch: Remove
      incorrect string taint in exception handling methods. Based on upstream
      patch.
    - CVE-2012-4464
    - CVE-2012-4466
  * SECURITY UPDATE: Missing input sanitization of file paths
    - debian/patches/20121016-cve_2012_4522.patch: NUL characters are not
      valid filename characters, so ensure that Ruby strings used for file
      paths do not contain NUL characters. Based on upstream patch.
    - CVE-2012-4522
  * debian/patches/20120927-cve_2011_1005.patch: Drop since ruby1.9.x is
    technically not affected by CVE-2011-1005. CVE-2012-4464 is the id
    assigned to the vulnerability in the ruby1.9.x branch.
 -- Tyler Hicks <email address hidden>   Tue, 16 Oct 2012 09:38:57 -0700

Upload details

Uploaded by:
Tyler Hicks
Uploaded to:
Quantal
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
ruby
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
ruby1.9.1_1.9.3.194.orig.tar.gz 11.9 MiB 46e2fa80be7efed51bd9cdc529d1fe22ebc7567ee0f91db4ab855438cf4bd8bb
ruby1.9.1_1.9.3.194-1ubuntu1.2.debian.tar.gz 51.6 KiB c0dab658725f646fccf61548b3169e1ee2ef513d9dab9b951063828a28feb12a
ruby1.9.1_1.9.3.194-1ubuntu1.2.dsc 2.7 KiB 56d2afe323e64166daf145c7e20617f33bd640a5d6c03c129eac98274465a3df

View changes file

Binary packages built by this source

libruby1.9.1: No summary available for libruby1.9.1 in ubuntu quantal.

No description available for libruby1.9.1 in ubuntu quantal.

libruby1.9.1-dbg: No summary available for libruby1.9.1-dbg in ubuntu quantal.

No description available for libruby1.9.1-dbg in ubuntu quantal.

libtcltk-ruby1.9.1: No summary available for libtcltk-ruby1.9.1 in ubuntu raring.

No description available for libtcltk-ruby1.9.1 in ubuntu raring.

ri1.9.1: No summary available for ri1.9.1 in ubuntu raring.

No description available for ri1.9.1 in ubuntu raring.

ruby1.9.1: No summary available for ruby1.9.1 in ubuntu raring.

No description available for ruby1.9.1 in ubuntu raring.

ruby1.9.1-dev: No summary available for ruby1.9.1-dev in ubuntu quantal.

No description available for ruby1.9.1-dev in ubuntu quantal.

ruby1.9.1-examples: No summary available for ruby1.9.1-examples in ubuntu raring.

No description available for ruby1.9.1-examples in ubuntu raring.

ruby1.9.1-full: No summary available for ruby1.9.1-full in ubuntu raring.

No description available for ruby1.9.1-full in ubuntu raring.

ruby1.9.3: No summary available for ruby1.9.3 in ubuntu raring.

No description available for ruby1.9.3 in ubuntu raring.