news4geeks.net
20Apr/120

Ruby 1.9.3 update fixes RubyGems security problem


Ruby logo The Ruby development team has published an update to the 1.9.3 series of its open source programming language to fix a vulnerability found in the RubyGems package management framework.

The maintenance release of the scripting language, labelled 1.9.3-p194, updates RubyGems to close a security hole that caused SSL server verification to fail for remote repositories. This has been addressed by disallowing redirects from https to http connections and by enabling the verification of server SSL certificates in an updated version of RubyGems, 1.8.23; more details on these issues are provided in the latest RubyGems History file. The developers encourage those who use https source in .gemrc or /etc/gemrc to upgrade as soon as possible.

Further information about the update, including a full list of bug fixes, can be found in the official release announcement and in the change log. Ruby 1.9.3-p194 is available to download from the project's site, and is distributed under either the Ruby Licence or the GPL.

(Source: h-online.com

Are you just scraping by coding in Ruby? Are you not prepared to pull infinite all-nighters? Are you less than amazingly fast? If you answered yes to any or all of ...
READ MORE
In the hopes of reducing the complexity of making data calls over the Web, eBay has launched a programming language, called ql.io, which bundles separate API requests into ...
READ MORE
Changes to the standard behind of one of the world's most popular programming languages have been approved by standards chiefs. The next version of C++ has been approved during a unanimous ...
READ MORE
Job ad seeks ‘mediocre’ developers
eBay launches Web query language
‘Major’ C++ revision receives standards blessing

Comments (0) Trackbacks (0)

No comments yet.


Leave a comment

Trackbacks are disabled.