Hello community, here is the log from the commit of package patchinfo.2361 for openSUSE:12.3:Update checked in at 2013-12-18 13:58:28 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:12.3:Update/patchinfo.2361 (Old) and /work/SRC/openSUSE:12.3:Update/.patchinfo.2361.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "patchinfo.2361" Changes: -------- New Changes file: NO CHANGES FILE!!! New: ---- _patchinfo ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ _patchinfo ++++++ <patchinfo> <issue id="853633" tracker="bnc">VUL-0: CVE-2013-6414: rubygem-actionpack: Action View DoS</issue> <issue id="853632" tracker="bnc">VUL-0: CVE-2013-6415: rubygem-actionpack: number_to_currency XSS</issue> <issue id="853627" tracker="bnc">VUL-0: CVE-2013-6417: rubygem-actionpack: unsafe query generation risk (incomplete fix for CVE-2013-0155)</issue> <issue id="853625" tracker="bnc">VUL-0: CVE-2013-4491: rubygem-actionpack: i18n missing translation XSS</issue> <issue id="CVE-2013-6414" tracker="cve" /> <issue id="CVE-2013-6415" tracker="cve" /> <issue id="CVE-2013-0155" tracker="cve" /> <issue id="CVE-2013-6417" tracker="cve" /> <issue id="CVE-2013-4491" tracker="cve" /> <category>security</category> <rating>moderate</rating> <packager>jordimassaguerpla</packager> <description> - fix CVE-2013-4491: rubygem-actionpack: i18n missing translation XSS (bnc#853625). File CVE-2013-4491.patch contains the patch - fix CVE-2013-6414: rubygem-actionpack: Action View DoS (bnc#853633). File CVE-2013-6414.patch contains the patch. - fix CVE-2013-6415: rubygem-actionpack: number_to_currency XSS (bnc#853632). File CVE-2013-6415.patch contains the patch. - fix CVE-2013-6417: rubygem-actionpack: unsafe query generation risk (incomplete fix for CVE-2013-0155) (bnc#853627). File CVE-2013-6417.patch contains the patch. </description> <summary>update for rubygem-actionpack-3_2</summary> </patchinfo> -- To unsubscribe, e-mail: opensuse-commit+unsubscr...@opensuse.org For additional commands, e-mail: opensuse-commit+h...@opensuse.org