Saturday, June 28, 2008

Security Update: Ruby

Slackware security team has released an advisory containing ruby updates which fixed security problem leading to DoS (Denial of Service) condition or allow execution of arbitrary code. Here's the latest -Current changelog:
Fri Jun 27 23:17:20 CDT 2008
d/ruby-1.8.6_p230-i486-1.tgz:
Upgraded to ruby-1.8.6-p230.
This fixes a number of security related bugs in Ruby which could lead to a denial of service (DoS) condition or allow execution of arbitrary code.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2662
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2663
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2664
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2725
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2726
(* Security fix *)