Bug#702525: ruby1.9.1: CVE-2013-1821: entity expansion DoS vulnerability in REXML

2013-03-08 Thread Salvatore Bonaccorso
Control: tags -1 + patch Hi I propose the attached patch applied from upstream's svn. I can do a NMU in case needed, but want first to have a second check on the resulting package. Regards, Salvatore diff -Nru ruby1.9.1-1.9.3.194/debian/changelog ruby1.9.1-1.9.3.194/debian/changelog --- ruby1.9

Bug#702525: ruby1.9.1: CVE-2013-1821: entity expansion DoS vulnerability in REXML

2013-03-07 Thread Salvatore Bonaccorso
Source: ruby1.9.1 Severity: grave Tags: security upstream patch Hi, the following vulnerability was published for ruby1.9.1. CVE-2013-1821[0]: entity expansion DoS vulnerability in REXML More details are explained in the upstream announcement[1]. Patches are commited to svn with revision r39384