Debian: 2609-1: rails: SQL query manipulation
(Jan 16) An interpretation conflict can cause the Active Record component of Rails, a web framework for the Ruby programming language, to truncate queries in unexpected ways. This may allow attackers to elevate their privileges. [More…]