SuSE: 2012:1012-1: important: rubygem-actionpack
Summary
This update to rubygem-actionpack fixes two unsafe query
generations with "IS NULL" in the WHERE clause.
(CVE-2012-2660
References
#765097 #766791
Cross- CVE-2012-2660 CVE-2012-2661 CVE-2012-2694
CVE-2012-2695
Affected Products:
SUSE Linux Enterprise Software Development Kit 11 SP2
https://www.suse.com/security/cve/CVE-2012-2660.html
https://www.suse.com/security/cve/CVE-2012-2661.html
https://www.suse.com/security/cve/CVE-2012-2694.html
https://www.suse.com/security/cve/CVE-2012-2695.html
https://bugzilla.novell.com/765097
https://bugzilla.novell.com/766791
https://login.microfocus.com/nidp/app/login