Regression: REXML DoS fix causes error when parsing XML
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
ruby1.8 (Debian) |
Fix Released
|
Unknown
|
|||
ruby1.8 (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
Binary package hint: ruby1.8
REXML in Ubuntu 8.10 causes unexpected error. When I use REXML in 8.04 original, this doesn't occurs.
This is reported Debian BTS (http://
- Env.
Package: libruby1.8
Status: install ok installed
Priority: optional
Section: libs
Installed-Size: 6136
Maintainer: Ubuntu Core Developers <email address hidden>
Architecture: amd64
Source: ruby1.8
Version: 1.8.7.72-1
- Step
$ ruby -r rexml/document -r open-uri -e 'REXML:
"BlastOutput_
"BlastOutput_
/usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from /usr/lib/
from -e:1
Changed in ruby1.8: | |
status: | Unknown → New |
Changed in ruby1.8 (Debian): | |
status: | New → Fix Released |
Changed in ruby1.8 (Ubuntu): | |
status: | New → Fix Released |
I can confirm this as well.