Bug 1095120
Summary: | CVE-2014-0130 rubygem-actionmailer: Ruby on Rails: directory traversal issue [epel-5] | ||
---|---|---|---|
Product: | [Fedora] Fedora EPEL | Reporter: | Murray McAllister <mmcallis> |
Component: | rubygem-actionmailer | Assignee: | Michael Stahnke <mastahnke> |
Status: | CLOSED NOTABUG | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | el5 | CC: | jrusnack, mastahnke, vanmeeuwen+fedora, vdanen |
Target Milestone: | --- | Keywords: | Security, SecurityTracking |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | fst_owner=jrusnack | ||
Fixed In Version: | Doc Type: | Release Note | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2014-10-23 04:16:00 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 1095105 |
Description
Murray McAllister
2014-05-07 07:53:19 UTC
Use the following update submission link to create the Bodhi request for this issue as it contains the top-level parent bug(s) as well as this tracking bug. This will ensure that all associated bugs get updated when new packages are pushed to stable. IMPORTANT: ensure that the "Close bugs when update is stable" option remains checked. Bodhi update submission link: https://admin.fedoraproject.org/updates/new/?type_=security&bugs=1095105,1095120 Actionmailer is not affected by this bug, according to https://09513209197612856111.googlegroups.com/attach/701b52303cbf1537/3-2-directory_traversal.patch?part=0.1&view=1&vt=ANaJVrH8dStcaJDlc4NVWkv2zyer6UJpnu0Hww4ywvm0ZELr-UO0mIo5GXE1N-oKtOicRxwYjYraWZ2lpx6efdMBwLE2uMgkl7OzN3odu91prMDA-I-SrHc The patch doesn't contain any actionmailer paths. |