IBM Security Bulletin: Vulnerability in Ruby on Rails affects IBM Endpoint Manager for Security Configuration Management – Security Compliance Analytics

Active Support is vulnerable to a denial of service, caused by an error when processing XML files. By persuading a victim to open a specially crafted XML documents, a remote attacker could exploit this vulnerability to trigger a SystemStackError and probably...

from IBM Product Security Incident Response Team http://ift.tt/1L2AIrO