SuSE: 2012:1011-1: important: rubygem-activerecord
Summary
This update to rubygem-activerecord fixes a SQL injection
caused by mishandling nested parameters . ( CVE-2012-2695
References
#766792
Cross- CVE-2012-2695
Affected Products:
WebYaST [Appliance - Tools]
SUSE Linux Enterprise Software Development Kit 11 SP1
https://www.suse.com/security/cve/CVE-2012-2695.html
https://bugzilla.novell.com/766792
https://login.microfocus.com/nidp/app/login