backport from libyaml-1.1.6 #187

Merged
merged 1 commit into from Mar 27, 2014

Conversation

3 participants
@hsbt
Member

hsbt commented Mar 27, 2014

libyaml <= 0.1.5 is vulnerable to CVE-2014-2525. I created patch for libyaml-0.1.6 fixes.

@hsbt

This comment has been minimized.

Show comment
Hide comment
@hsbt

hsbt Mar 27, 2014

Member

@tenderlove If you confirmed this, I'll merge into ruby trunk.

Member

hsbt commented Mar 27, 2014

@tenderlove If you confirmed this, I'll merge into ruby trunk.

tenderlove added a commit that referenced this pull request Mar 27, 2014

@tenderlove tenderlove merged commit f21cb67 into master Mar 27, 2014

1 check passed

default The Travis CI build passed
Details
@tenderlove

This comment has been minimized.

Show comment
Hide comment
@tenderlove

tenderlove Mar 27, 2014

Member

@hsbt looks good. Please merge to ruby-trunk!

Member

tenderlove commented Mar 27, 2014

@hsbt looks good. Please merge to ruby-trunk!

@hone

This comment has been minimized.

Show comment
Hide comment
@hone

hone Mar 27, 2014

Member

❤️ ❤️

Member

hone commented Mar 27, 2014

❤️ ❤️

@hsbt hsbt deleted the libyaml-0.1.6 branch Mar 28, 2014

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment