Solution
Please Install the Updated Packages.
Insight
3 Security issues were fixed in rails 2.3 core components.
2 NULL query issues where fixed in the actionpack gem. 1 SQL injection was fixed in the activerecord gem.
Affected
rubygem-actionpack/activerecord-2_3 on openSUSE 12.1, openSUSE 11.4
Severity
Classification
-
CVE CVE-2012-2660, CVE-2012-2694, CVE-2012-2695 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities