[SECURITY] Fedora Core 4 Update: ruby-1.8.4-3.fc4

Akira Tagoh tagoh at redhat.com
Sat Jul 22 19:08:02 UTC 2006


---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2006-842
2006-07-22
---------------------------------------------------------------------

Product     : Fedora Core 4
Name        : ruby
Version     : 1.8.4
Release     : 3.fc4
Summary     : An interpreter of object-oriented scripting language
Description :
Ruby is the interpreted scripting language for quick and easy
object-oriented programming.  It has many features to process text
files and to do system management tasks (as in Perl).  It is simple,
straight-forward, and extensible.

---------------------------------------------------------------------

* Thu Jul 20 2006 Akira TAGOH <tagoh at redhat.com> - 1.8.4-3
- security fixes [CVE-2006-3694]
  - ruby-1.8.4-fix-insecure-dir-operation.patch:
  - ruby-1.8.4-fix-insecure-regexp-modification.patch: fixed the insecure
    operations in the certain safe-level restrictions. (#199538)
  - ruby-1.8.4-fix-alias-safe-level.patch: fixed to not bypass the certain
    safe-level restrictions. (#199543)

---------------------------------------------------------------------
This update can be downloaded from:
    http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4/

180ef66f876675a4202500586c2365ac6aa8ce34  SRPMS/ruby-1.8.4-3.fc4.src.rpm
180ef66f876675a4202500586c2365ac6aa8ce34  noarch/ruby-1.8.4-3.fc4.src.rpm
b972f097eb9758445a3a74a41ddbacd5d654675a  ppc/ruby-1.8.4-3.fc4.ppc.rpm
95fc953f2a64acb7ce4d19a5b198763f06b6506b  ppc/ruby-libs-1.8.4-3.fc4.ppc.rpm
3d25edd53a6ec1bbe710e41193ac33d8845b1986  ppc/ruby-devel-1.8.4-3.fc4.ppc.rpm
550a0794d56ecc055eb9fbc9edd0ed0bc47161d7  ppc/ruby-tcltk-1.8.4-3.fc4.ppc.rpm
3013bcbdd1a9c8d98023880c0d66463869cd86bd  ppc/irb-1.8.4-3.fc4.ppc.rpm
a885e63748050e5ca8c0a95b98e3fadad19a2f06  ppc/rdoc-1.8.4-3.fc4.ppc.rpm
0b8f29cb7f96df6daf170e54875a2994e16e0c3b  ppc/ruby-docs-1.8.4-3.fc4.ppc.rpm
56efa1ead7c6a27667ef60665e320c20a945401e  ppc/ruby-mode-1.8.4-3.fc4.ppc.rpm
1d09d43c2eff5e5bdd44f340b94b2b894ab8f181  ppc/ri-1.8.4-3.fc4.ppc.rpm
088f2aaeff8d1fdacd3d7e4a975b7879b7b73777  ppc/debug/ruby-debuginfo-1.8.4-3.fc4.ppc.rpm
7042b2d1262612f02c6095ec0186e4553de62e43  x86_64/ruby-1.8.4-3.fc4.x86_64.rpm
78e9ebcac81fb24335ccb9cdb1f2337c2656b5a5  x86_64/ruby-libs-1.8.4-3.fc4.x86_64.rpm
10257e289b48cf858b81612060dd98295060b32d  x86_64/ruby-devel-1.8.4-3.fc4.x86_64.rpm
ac2fdba9dc043b6117307eb5db5bf2050eafb108  x86_64/ruby-tcltk-1.8.4-3.fc4.x86_64.rpm
bb5a054dc83339742f0017f084185237a1ae0b53  x86_64/irb-1.8.4-3.fc4.x86_64.rpm
e47ec82d883343b4978fea308d82145ed02c5d4c  x86_64/rdoc-1.8.4-3.fc4.x86_64.rpm
189cfbbd00e8bd337635c9b2a9d3d59467f354a3  x86_64/ruby-docs-1.8.4-3.fc4.x86_64.rpm
7b3d93dc239e76ec36e85023566863346b64f0fb  x86_64/ruby-mode-1.8.4-3.fc4.x86_64.rpm
82846f9a5197b85984c576637504fffbecf7ae32  x86_64/ri-1.8.4-3.fc4.x86_64.rpm
7dcb30560e4e90920332a9ad697ce1a3a04d3b76  x86_64/debug/ruby-debuginfo-1.8.4-3.fc4.x86_64.rpm
39932aae2cc3f6a276760c75a462441a98647516  i386/ruby-1.8.4-3.fc4.i386.rpm
88c0f5e325229bb44997f0c140eb8f024b0f5f6e  i386/ruby-libs-1.8.4-3.fc4.i386.rpm
4f4530b7b4f16e6d49626d85e5f57bb8dd57ea34  i386/ruby-devel-1.8.4-3.fc4.i386.rpm
3f842b345c46fd139006a916018f2661cb027562  i386/ruby-tcltk-1.8.4-3.fc4.i386.rpm
7f1085f1c2a5bff19e07ab2181061708339a8c86  i386/irb-1.8.4-3.fc4.i386.rpm
e8b51cee8ee7f083f53ebedea3d79819261e2f33  i386/rdoc-1.8.4-3.fc4.i386.rpm
9a03913bc9537890ad2fa05fc89ead78b46b10b4  i386/ruby-docs-1.8.4-3.fc4.i386.rpm
70867798b7430c0fcd8aa2cebcce91ecca16e596  i386/ruby-mode-1.8.4-3.fc4.i386.rpm
2c3d7446b188a57692b198bb5e8fbd4eeae6f9d2  i386/ri-1.8.4-3.fc4.i386.rpm
45e66354830c6b3daa6b455c8cc484279ab46aae  i386/debug/ruby-debuginfo-1.8.4-3.fc4.i386.rpm

This update can be installed with the 'yum' update program.  Use 'yum update
package-name' at the command line.  For more information, refer to 'Managing
Software with yum,' available at http://fedora.redhat.com/docs/yum/.
---------------------------------------------------------------------




More information about the package-announce mailing list