Development/Languages

ruby-devel: A Ruby development environment.

Name:ruby-devel Vendor:Scientific Linux
Version:1.8.1 License:Distributable
Release:7.el4_7.1 URL:http://www.ruby-lang.org/
Summary
Header files and libraries for building a extension library for the Ruby or an application embedded Ruby.

Arch: i386

Download:ruby-devel-1.8.1-7.el4_7.1.i386.rpm
Build Date:Wed Oct 22 12:07:32 2008
Packager:
Size:1.28 MiB

Changelog

* Wed Oct 8 19:00:00 2008 Akira TAGOH <tagoh{%}redhat{*}com> - 1.8.1-7.el4_7.1
- security fixes. (#461579)
- CVE-2008-3655: multiple insufficient safe mode restrictions.
- CVE-2008-3656: WEBrick DoS vulnerability (CPU consumption).
- CVE-2008-3657: missing "taintness" checks in dl module.
- CVE-2008-3905: use of predictable source port and transaction id in DNS
                 requests done by resolv.rb module.
- CVE-2008-3443: Memory allocation failure in Ruby regex engine
                 (remotely exploitable DoS).
- CVE-2008-3790: DoS vulnerability in the REXML module.
* Wed Jul 2 19:00:00 2008 Akira TAGOH <tagoh{%}redhat{*}com> - 1.8.1-7.el4_6.1
- security fixes. (#451926)
- CVE-2008-2662: Integer overflow in rb_str_buf_append().
- CVE-2008-2663: Integer overflow in rb_ary_store().
- CVE-2008-2664: Unsafe use of alloca in rb_str_format().
- CVE-2008-2725: Integer overflow in rb_ary_update().
- CVE-2008-2726: Integer overflow in rb_ary_update().
- CVE-2008-2376: Integer overflow in rb_ary_fill().
* Sat Oct 27 19:00:00 2007 Akira TAGOH <tagoh{%}redhat{*}com> - 1.8.1-7.EL4.8.1
- security fixes (#320371)
- ruby-1.8.1-cgi-CVE-2006-6303.patch: fix an infinite loop with certain HTTp
  request.
- ruby-1.8.1-CVE-2007-5162.patch: fix an insufficient verification of SSL
  certificate.

Listing created by RepoView-0.5.2