Ruby on Rails ã® Action Pack ã®ãã©ã¡ã¼ã¿è§£æã®èå¼±æ§ã«ããä»»æã®Rubyã³ã¼ããå®è¡ãããèå¼±æ§ï¼CVE-2013-0156ï¼ã«é¢ããæ¤è¨¼ã¬ãã¼ã Tweet 2013/01/24 NTTãã¼ã¿å 端æè¡æ ªå¼ä¼ç¤¾ è¾» ä¼¸å¼ å°æ¾ å¾¹ä¹ ãæ¦è¦ã Ruby on Railsã«ããªã¢ã¼ãããä»»æã®ã³ã¼ãããå®è¡ãããèå¼±æ§ããçºè¦ããã¾ããã ãã®èå¼±æ§ã¯ããã©ã¡ã¼ã¿è§£æã«ãããYAMLããã³ã·ã³ãã«å¤æã®ä¸åã«èµ·å ãã¾ãããã®èå¼±æ§ãæªç¨ãã¦ãæ»æè ã¯ã¿ã¼ã²ãããã¹ãä¸ã«ã¦ã奪åããã¦ã¼ã¶æ¨©éã§ä»»æã®Rubyã³ã¼ãã®å®è¡ãå¯è½ã§ãã ä»åããã®Ruby on Railsã®Action Packã®ãã©ã¡ã¼ã¿è§£æã®èå¼±æ§ã«ãããä»»æã®Rubyã³ã¼ããå®è¡ãããèå¼±æ§ï¼CVE-2013-0156ï¼ã®åç¾æ§ã«ã¤ãã¦æ¤è¨¼ãè¡ãã¾ããã æ¤è¨¼ç°å¢ã«ã¯ãHTTPãªã¯ã¨ã¹ããå¦çã
{{#tags}}- {{label}}
{{/tags}}