Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
1qaz2wsx3edc
on Jan 8, 2013
|
parent
|
context
|
favorite
| on:
Multiple vulnerabilities in parameter parsing in A...
Gems are unsigned. Patching from a different source is idiotic. Do not use: you have no clue who is the owner.
amalag
on Jan 9, 2013
[–]
Not so idiotic if you know the owner. It is done by Heroku's Ruby team
http://hone.heroku.com/bundler%20heroku/2012/10/22/rubygems-...
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: