Oval Definition:oval:org.opensuse.security:def:20140081
Revision Date:2021-08-15Version:1
Title:CVE-2014-0081
Description:

Multiple cross-site scripting (XSS) vulnerabilities in actionview/lib/action_view/helpers/number_helper.rb in Ruby on Rails before 3.2.17, 4.0.x before 4.0.3, and 4.1.x before 4.1.0.beta2 allow remote attackers to inject arbitrary web script or HTML via the (1) format, (2) negative_format, or (3) units parameter to the (a) number_to_currency, (b) number_to_percentage, or (c) number_to_human helper.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-0081
Mitre CVE-2014-0081
SUSE CVE-2014-0081
openSUSE-SU-2014:0295-1
openSUSE-SU-2014:0295-1
SUSE-SU-2014:0457-1
SUSE-SU-2014:0457-1
SUSE-SU-2014:0457-2
SUSE-SU-2014:0457-2
SUSE-SU-2014:0734-1
SUSE-SU-2014:0734-1
SUSE-SU-2014:0756-1
SUSE-SU-2014:0756-1
Platform(s):openSUSE 12.3 Update
openSUSE 13.1
SUSE Cloud 2.0
SUSE Cloud 3
SUSE Lifecycle Management Server 1.3
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server for SAP Applications 11 SP3
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Software Development Kit 11 SP3
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Studio Onsite 1.3
WebYaST 1.3
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND Package Information
  • rubygem-actionpack-3_2-3.2.13-2.15.1 is installed
  • OR rubygem-actionpack-3_2-doc-3.2.13-2.15.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
  • AND rubygem-actionpack-2_3-2.3.17-0.15.2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND rubygem-actionpack-3_2-3.2.12-0.19 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
  • AND rubygem-actionpack-2_3-2.3.17-0.15 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND rubygem-actionpack-3_2-3.2.12-0.19.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP3 is installed
  • AND rubygem-actionpack-2_3-2.3.17-0.15.2 is installed
  • BACK