Vulnerability Bulletins

DSA-3159 ruby1.8 - security update

   
Affected software Debian
 
It was discovered that the REXML parser, part of the interpreter for theRuby language, could be coerced into allocating large string objects thatcould consume all available memory on the system. This could allow remoteattackers to cause a denial of service (crash).

More info:

https://www.debian.org/security/2015/dsa-3159