ruby1.8 (1.8.7.358-4ubuntu0.2) quantal-security; urgency=low
* SECURITY UPDATE: REXML entity expansion DoS
- debian/patches/CVE-2013-1821.patch: set an expansion limit in
lib/rexml/document.rb, lib/rexml/text.rb, added test to
test/rexml/test_document.rb.
- Patch taken from Debian's 1.8.7.358-7
- CVE-2013-1821
Date: 2013-03-22 19:00:23.177029+00:00
Changed-By: Marc Deslauriers <[email protected]>
https://launchpad.net/ubuntu/quantal/+source/ruby1.8/1.8.7.358-4ubuntu0.2
Sorry, changesfile not available.
--
Quantal-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/quantal-changes