oss-sec mailing list archives

Re: CVE Request: ruby PRNG fixes


From: Josh Bressers <bressers () redhat com>
Date: Tue, 12 Jul 2011 15:43:35 -0400 (EDT)

Please use CVE-2011-2686

Thanks.

-- 
    JB

----- Original Message -----
Hi,

Ruby 1.8.7-p352 fixes initialization of the PRNG in forked
processes:

http://www.ruby-lang.org/en/news/2011/07/02/ruby-1-8-7-p352-released/
http://redmine.ruby-lang.org/issues/4579
http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=31713
http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=32050

cu
Ludwig

--
(o_ Ludwig Nussel
//\
V_/_ http://www.suse.de/
SUSE LINUX Products GmbH, GF: Jeff Hawn, Jennifer Guild, Felix
Imendörffer, HRB 16746 (AG Nürnberg)


Current thread: