[ruby-cvs:56693] nobu:r49543 (trunk): getaddrinfo.c: GHOST vulnerability check

nobu at ruby-lang.org nobu at ruby-lang.org
Sun Feb 8 13:04:33 JST 2015


nobu	2015-02-08 13:04:32 +0900 (Sun, 08 Feb 2015)

  New Revision: 49543

  http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=49543

  Log:
    getaddrinfo.c: GHOST vulnerability check
    
    * ext/socket/getaddrinfo.c (get_addr): reject too long hostname to
      get rid of GHOST vulnerability on very old platforms.
    * ext/socket/raddrinfo.c (make_hostent_internal): ditto, paranoic
      check for the canonnical name.

  Modified files:
    trunk/ChangeLog
    trunk/ext/socket/getaddrinfo.c
    trunk/ext/socket/raddrinfo.c


More information about the ruby-cvs mailing list