Explore top 10 tips to secure your open-source projects now. Read More
×-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory GLSA 200711-17
https://security.gentoo.org/
Severity: Normal
Title: Ruby on Rails: Multiple vulnerabilities
Date: November 14, 2007
Bugs: #195315, #182223
ID: 200711-17
Synopsis
=======
Several vulnerabilities were found in Ruby on Rails allowing for file
disclosure and theft of user credentials.
Background
=========
Ruby on Rails is a free web framework used to develop database-driven
web applications.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 dev-ruby/rails < 1.2.5 >= 1.2.5
==========
candlerb found that ActiveResource, when processing responses using the
Hash.from_xm...Read the Full Advisory
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.