* SECURITY UPDATE: Unsafe Query Generation Risk in Ruby on Rails
(LP: #1100188)
- debian/patches/CVE-2013-0155: Strip nils from collections on JSON and
XML posts. Based on upstream patch.
- CVE-2013-0155
-- Christian Kuersteiner <email address hidden> Wed, 16 Jan 2013 16:14:08 +0700
This bug was fixed in the package ruby-activereco rd-3.2 - 3.2.6-2ubuntu0.1
--------------- rd-3.2 (3.2.6-2ubuntu0.1) quantal-security; urgency=low
ruby-activereco
* SECURITY UPDATE: Unsafe Query Generation Risk in Ruby on Rails patches/ CVE-2013- 0155: Strip nils from collections on JSON and
(LP: #1100188)
- debian/
XML posts. Based on upstream patch.
- CVE-2013-0155
-- Christian Kuersteiner <email address hidden> Wed, 16 Jan 2013 16:14:08 +0700