[#5219] Segmentation fault in timeout.rb — Michel Pastor <K@...>

Hi,

18 messages 2005/06/16
[#5220] Re: Segmentation fault in timeout.rb — Eric Hodel <drbrain@...7.net> 2005/06/16

[#5221] Re: Segmentation fault in timeout.rb — Michel Pastor <K@...> 2005/06/16

On Fri, 17 Jun 2005 05:03:18 +0900

[#5223] Re: Segmentation fault in timeout.rb — nobu.nokada@... 2005/06/17

Hi,

[#5296] Subversion — Shugo Maeda <shugo@...>

Hi,

64 messages 2005/06/30
[#5297] Re: Subversion — Curt Hibbs <curt@...> 2005/06/30

Shugo Maeda wrote:

[#5298] Re: Subversion — Nikolai Weibull <mailing-lists.ruby-core@...> 2005/06/30

Curt Hibbs wrote:

[#5301] Re: Subversion — Austin Ziegler <halostatue@...> 2005/06/30

On 6/30/05, Nikolai Weibull

[#5304] Re: Subversion — Nikolai Weibull <mailing-lists.ruby-core@...> 2005/06/30

Austin Ziegler wrote:

[#5305] Re: Subversion — Austin Ziegler <halostatue@...> 2005/06/30

On 6/30/05, Nikolai Weibull

[#5307] Re: Subversion — mathew <meta@...> 2005/06/30

Austin Ziegler wrote:

[#5308] Re: Subversion — Austin Ziegler <halostatue@...> 2005/06/30

On 6/30/05, mathew <meta@pobox.com> wrote:

[#5311] Re: Subversion — mathew <meta@...> 2005/07/01

Austin Ziegler wrote:

[#5323] Re: Subversion — Austin Ziegler <halostatue@...> 2005/07/01

On 7/1/05, mathew <meta@pobox.com> wrote:

[#5325] Re: Subversion — Nikolai Weibull <mailing-lists.ruby-core@...> 2005/07/01

Austin Ziegler wrote:

XMLRPC vulnerabilities?

From: Hugh Sasse <hgs@...>
Date: 2005-06-22 09:41:32 UTC
List: ruby-core #5264
I've just seen this (by RSS)

http://www.securityfocus.com/bid/14016

I've not explored the issue, but thought it should be mentioned
here.

The site seems rather quiet about what the problem is.
Taken from the discussion page:
<quote>
Yukihiro Matsumoto Ruby XMLRPC Server Unspecified Command Execution
Vulnerability

Ruby is affected by an unspecified command execution vulnerability.
Reportedly, this issue affects the XMLRPC server.

It may be possible for an attacker to gain unauthorized access to an
affected computer by exploiting this issue.

Ruby 1.8.2 is known to be vulnerable to this vulnerability, however,
other versions may be affected as well.
</quote>

Maybe someone will know what to do with this info.
         Hugh

In This Thread

Prev Next