openSUSE-SU-2016:0066-1: moderate: Security update for rubygem-mail, rubygem-mail-2_4, rubygem-mail-2_5
openSUSE Security Update: Security update for rubygem-mail, rubygem-mail-2_4, rubygem-mail-2_5 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2016:0066-1 Rating: moderate References: #959129 Affected Products: openSUSE Leap 42.1 openSUSE 13.2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for rubygem-mail, rubygem-mail-2_4, rubygem-mail-2_5 fixes the following security issues: * boo#959129: SMTP Injection via recipient email addresses Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.1: zypper in -t patch openSUSE-2016-15=1 - openSUSE 13.2: zypper in -t patch openSUSE-2016-15=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE Leap 42.1 (i586 x86_64): ruby2.1-rubygem-mail-2_5-2.5.4-6.1 ruby2.1-rubygem-mail-doc-2_5-2.5.4-6.1 rubygem-mail-2_4-2.4.4-11.1 rubygem-mail-2_4-doc-2.4.4-11.1 - openSUSE 13.2 (i586 x86_64): rubygem-mail-2.5.4-4.4.1 rubygem-mail-2_4-2.4.4-6.3.1 rubygem-mail-2_4-doc-2.4.4-6.3.1 rubygem-mail-doc-2.5.4-4.4.1 References: https://bugzilla.suse.com/959129
participants (1)
-
opensuse-security@opensuse.org