diff options
Diffstat (limited to 'ChangeLog')
-rw-r--r-- | ChangeLog | 15 |
1 files changed, 15 insertions, 0 deletions
@@ -1,3 +1,18 @@ +Wed Dec 16 21:10:03 2015 CHIKANAGA Tomoyuki <nagachika@ruby-lang.org> + + * ext/fiddle/handle.c: check tainted string arguments. + Patch provided by tenderlove and nobu. + + * test/fiddle/test_handle.rb (class TestHandle): add test for above. + +Wed Dec 16 21:10:36 2015 Yuki Sonoda (Yugui) <yugui@yugui.jp> + + * ext/dl/handle.c (rb_dlhandle_initialize): prohibits DL::dlopen + with a tainted name of library. + Patch by sheepman <sheepman AT sheepman.sakura.ne.jp>. + + * ext/dl/handle.c (rb_dlhandle_sym): ditto + Wed Dec 16 16:13:04 2015 Nobuyoshi Nakada <nobu@ruby-lang.org> * io.c (parse_mode_enc): fix buffer overflow. |