[Technik] [SECURITY] [DSA 1612-1] New ruby1.8 packages fix several vulnerabilities

Noèl Köthe noel at debian.org
Wed Jul 23 20:08:43 CEST 2008


Am Montag, den 21.07.2008, 19:29 +0200 schrieb Moritz Muehlenhoff:

> Debian Security Advisory DSA-1612-1                  security at debian.org
> http://www.debian.org/security/                       Moritz Muehlenhoff
> July 21, 2008                         http://www.debian.org/security/faq
> 
> Package        : ruby1.8
> Vulnerability  : several
> Problem-Type   : remote
> Debian-specific: no
> CVE ID         : CVE-2008-2662 CVE-2008-2663 CVE-2008-2664 CVE-2008-2725 CVE-2008-2726 CVE-2008-2376

ruby1.8 auf h01, h02, h03, h04, h51, h52 und h90 aktualisiert.

> For the stable distribution (etch), these problems have been fixed in
> version 1.8.5-4etch2.

changelog:
ruby1.8 (1.8.5-4etch2) stable-security; urgency=low

  * applied debian/patches/165_CVE-2008-2662,2663,2664,2725,2726.patch and
    appiled debian/patches/166_CVE-2008-2376.patch:
      - security fixes for CVE-2008-2662, CVE-2008-2663, CVE-2008-2664,
        CVE-2008-2725, CVE-2008-2726, CVE-2008-2376.
    (Closes: #487238)

 -- akira yamada <akira at debian.org>  Thu, 10 Jul 2008 14:58:13 +0900

-- 
Noèl Köthe <noel debian.org>
Debian GNU/Linux, www.debian.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: Dies ist ein digital signierter Nachrichtenteil
Url : /archiv/technik/attachments/20080723/1420eee2/attachment.pgp 


More information about the Technik mailing list