shield
Security update for rubygem-actionpack-3_2
slewyst13-rubygem-actionpack-3_2-9292
Rubygem Actionpack has been updated to fix several security vulnerabilities: * XSS Vulnerability in number_to_currency, number_to_percentage and number_to_human (CVE-2014-0081). * Denial of Service Vulnerability in Action View when using render :text (CVE-2014-0082). * Directory traversal issue (CVE-2014-0130). Security Issue references: * CVE-2014-0082 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0082> * CVE-2014-0081 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0081> * CVE-2014-0130 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0130>
-
Release DateMay 23 2014
-
References
-
Typesecurity
-
Severitymoderate
cloud_download Downloads
SUSE WebYaST 1.3 unknown
-
Packagesrubygem-actionpack-3_2
Web-flow and rendering framework putting the VC in MVC (part of Rails)3.2.12-0.15.1 lock rpm
SUSE WebYaST 1.3 unknown
-
Packagesrubygem-actionpack-3_2
Web-flow and rendering framework putting the VC in MVC (part of Rails)3.2.12-0.15.1 lock rpm
SUSE WebYaST 1.3 unknown
-
Packagesrubygem-actionpack-3_2
Web-flow and rendering framework putting the VC in MVC (part of Rails)3.2.12-0.15.1 lock rpm
SUSE WebYaST 1.3 unknown
-
Packagesrubygem-actionpack-3_2
Web-flow and rendering framework putting the VC in MVC (part of Rails)3.2.12-0.15.1 lock rpm
SUSE WebYaST 1.3 unknown
-
Packagesrubygem-actionpack-3_2
Web-flow and rendering framework putting the VC in MVC (part of Rails)3.2.12-0.15.1 lock rpm