Simon Willison’s Weblog

Subscribe

Items tagged opensource, security in 2008

Filters: Year: 2008 × opensource × security × Sorted by date


Ruby’s Vulnerability Handling Debacle. The critical Ruby vulnerabilities are over a week old now but there’s still no good official patch (the security patches cause segfaults in Rails, leaving the community reliant on unofficial patches from third parties). Max Caceres has three takeaway lessons, the most important of which is to always keep a “last-known-good” branch to apply critical patches to. # 2nd July 2008, 10:39 am

Types

Years

Months

Tags