[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    Re: [oss-security] ruby regression (was: Re: [vendor-sec] Ruby memory corruption bugs in array and s
From:       Drew Yao <ayao () apple ! com>
Date:       2008-06-24 19:02:20
Message-ID: E3DB0344-D596-40A5-946F-A7B06D54A646 () apple ! com
[Download RAW message or body]

> Where did you get 1.8.6p231? The latest I see is 1.8.6p230, which,
> according to upstream's advisory [1], fixes the security issues.

Sorry, I meant p230.


> However, the test suite ("make test" in the
> build dir) passes. It was my understanding that the test suite should
> fail, given my reading of the forum thread linked to by the blog post
> Drew mentioned above: http://www.ruby-forum.com/topic/157034


I think make test is not the same test suite they're talking about.


---
Drew Yao
Apple Product Security


>

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic