ruby2.1 2.1.2-2ubuntu1.1 source package in Ubuntu

Changelog

ruby2.1 (2.1.2-2ubuntu1.1) utopic-security; urgency=medium

  * SECURITY UPDATE: denial of service via buffer overrun in encodes
    function
    - debian/patches/CVE-2014x-4975.patch: properly calculate buffer size
      in pack.c, added test to test/ruby/test_pack.rb.
    - CVE-2014-4975
  * SECURITY UPDATE: denial of service via XML expansion
    - debian/patches/CVE-2014-8080.patch: limit expansions in
      lib/rexml/entity.rb, added tests to test/rexml/test_document.rb,
      test/rexml/test_entity.rb.
    - CVE-2014-8080
 -- Marc Deslauriers <email address hidden>   Fri, 31 Oct 2014 12:52:43 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Utopic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
ruby
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
ruby2.1_2.1.2.orig.tar.gz 11.6 MiB fc2fd4db363f386d4e4cc32f9074b13229be821e73e1479462f84e95e2274705
ruby2.1_2.1.2-2ubuntu1.1.debian.tar.xz 79.6 KiB ba6657934e14db7bc77a32f577186d8d6b33c902734327c6cf3e199e08b06f9d
ruby2.1_2.1.2-2ubuntu1.1.dsc 2.4 KiB 0f6a03022dc081559529b96ac5fb6efce282931a31cc108ab5aa13dd24b041e0

View changes file

Binary packages built by this source

libruby2.1: No summary available for libruby2.1 in ubuntu utopic.

No description available for libruby2.1 in ubuntu utopic.

ruby2.1: No summary available for ruby2.1 in ubuntu utopic.

No description available for ruby2.1 in ubuntu utopic.

ruby2.1-dev: No summary available for ruby2.1-dev in ubuntu utopic.

No description available for ruby2.1-dev in ubuntu utopic.

ruby2.1-doc: No summary available for ruby2.1-doc in ubuntu utopic.

No description available for ruby2.1-doc in ubuntu utopic.