DSA-1860-1

NameDSA-1860-1
SourceDebian
Descriptionruby1.8 ruby1.9 - several issues
ReferencesCVE-2009-0642, CVE-2009-1904
Debian/oldstablepackages ruby1.8, ruby1.9 are fixed in oldstable-security.
Debian/stablenot vulnerable
Debian/testingnot known to be vulnerable
Debian/unstablenot known to be vulnerable.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
ruby1.8 (PTS)etch1.8.5-4etch4vulnerable
etch (security)1.8.5-4etch5fixed
lenny, lenny (security)1.8.7.72-3lenny1fixed
ruby1.9 (PTS)etch1.9.0+20060609-1etch4vulnerable
etch (security)1.9.0+20060609-1etch5fixed
lenny, lenny (security)1.9.0.2-9lenny1fixed

The next table lists affected binary packages.

Binary PackageReleaseVersionStatusArchitecures
irb1.8, rdoc1.8, ri1.8, ruby1.8-elisp, ruby1.8-examplesetch1.8.5-4etch4vulnerableall
etch (security)1.8.5-4etch5fixedall
lenny, lenny (security)1.8.7.72-3lenny1fixedall
irb1.9, rdoc1.9, ri1.9, ruby1.9-elisp, ruby1.9-examplesetch1.9.0+20060609-1etch4vulnerableall
etch (security)1.9.0+20060609-1etch5fixedall
lenny, lenny (security)1.9.0.2-9lenny1fixedall
libdbm-ruby1.8, libgdbm-ruby1.8, libopenssl-ruby1.8, libreadline-ruby1.8, libruby1.8, libruby1.8-dbg, libtcltk-ruby1.8, ruby1.8, ruby1.8-devetch1.8.5-4etch4vulnerablealpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
etch (security)1.8.5-4etch4vulnerablehppa, sparc
etch (security)1.8.5-4etch5fixedalpha, amd64, arm, i386, ia64, mips, mipsel, powerpc, s390
lenny, lenny (security)1.8.7.72-3lenny1fixedalpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
libdbm-ruby1.9, libgdbm-ruby1.9, libopenssl-ruby1.9, libreadline-ruby1.9, libruby1.9, libruby1.9-dbg, libtcltk-ruby1.9, ruby1.9, ruby1.9-devetch1.9.0+20060609-1etch4vulnerablealpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
etch (security)1.9.0+20060609-1etch4vulnerablesparc
etch (security)1.9.0+20060609-1etch5fixedalpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390
lenny, lenny (security)1.9.0.2-9lenny1fixedalpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc

The information above is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
ruby1.8sourceetch1.8.5-4etch5unknown
ruby1.8sourcelenny1.8.7.72-3lenny1unknown
ruby1.9sourceetch1.9.0+20060609-1etch5unknown
ruby1.9sourcelenny1.9.0.2-9lenny1unknown

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Imprint