Bug#532689: DoS vulnerability in BigDecimal Ruby Library

2009-06-12 Thread Daigo Moriwaki
Hi Johannes, Thank you for the report. I am preparing a new release 1.8.7.173. Reminder: CVE-2009-1904 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-1904 Regards, Daigo -- Daigo Moriwaki daigo at debian dot org -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org

Bug#532689: DoS vulnerability in BigDecimal Ruby Library

2009-06-10 Thread Johannes Barre
Package: ruby1.8 Version: 1.8.7.72-3 Severity: serious Tags: BigDecimal ruby This is a copy of the bug report at https://bugs.launchpad.net/ubuntu/+source/ruby1.8/+bug/385436 A denial of service (DoS) vulnerability was found on the BigDecimal standard library of Ruby. Conversion from BigDecimal o