Comment 11 for bug 1119256

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package ruby-activesupport-2.3 - 2.3.14-4ubuntu0.2

---------------
ruby-activesupport-2.3 (2.3.14-4ubuntu0.2) quantal-security; urgency=low

  * SECURITY UPDATE: Add an OkJson backend and remove the YAML backend to
    resolve improper conversion of JSON to YAML (LP: #1119256)
    - debian/patches/CVE-2013-0333.patch: added patch from Debian 2.3.14-6
    - CVE-2013-0333
 -- Jamie Strandboge <email address hidden> Wed, 13 Feb 2013 10:41:04 -0600