Path to this page:
Subject: CVS commit: [pkgsrc-2012Q4] pkgsrc
From: Matthias Scheler
Date: 2013-01-18 15:51:11
Message id: 20130118145111.6A393175DD@cvs.netbsd.org
Log Message:
Pullup ticket #4023 - requested by taca
databases/ruby-activerecord3: security update
devel/ruby-activemodel: security update
devel/ruby-activesupport3: security update
devel/ruby-railties: security update
mail/ruby-actionmailer3: security update
www/ruby-actionpack3: security update
www/ruby-activeresource3: security update
www/ruby-rails3: security update
Revisions pulled up:
- databases/ruby-activerecord3/distinfo 1.17
- devel/ruby-activemodel/distinfo 1.17
- devel/ruby-activesupport3/distinfo 1.18
- devel/ruby-railties/PLIST 1.6
- devel/ruby-railties/distinfo 1.17
- lang/ruby/rails.mk 1.35
- mail/ruby-actionmailer3/distinfo 1.19
- www/ruby-actionpack3/distinfo 1.18
- www/ruby-activeresource3/distinfo 1.17
- www/ruby-rails3/distinfo 1.18
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:24:27 UTC 2013
Modified Files:
pkgsrc/lang/ruby: rails.mk
Log Message:
Start update of Ruby on Rails 3.0.19.
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:25:17 UTC 2013
Modified Files:
pkgsrc/devel/ruby-activesupport3: distinfo
Log Message:
Update ruby-activesupport3 to 3.0.19.
## Rails 3.0.19 (Jan 8, 2012) ##
* Hash.from_xml raises when it encounters type="symbol" or \
type="yaml".
Use Hash.from_trusted_xml to parse this XML.
CVE-2013-0156
*Jeremy Kemper*
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:26:20 UTC 2013
Modified Files:
pkgsrc/devel/ruby-activemodel: distinfo
Log Message:
Update ruby-activemodel to 3.0.19.
Only version has updated.
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:27:13 UTC 2013
Modified Files:
pkgsrc/www/ruby-activeresource3: distinfo
Log Message:
Update ruby-activeresource3 to 3.0.19.
Only version has updated.
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:28:04 UTC 2013
Modified Files:
pkgsrc/www/ruby-actionpack3: distinfo
Log Message:
Update ruby-actionpack3 to 3.0.19.
## Rails 3.0.19
* Strip nils from collections on JSON and XML posts. [CVE-2013-0155]
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:28:50 UTC 2013
Modified Files:
pkgsrc/databases/ruby-activerecord3: distinfo
Log Message:
Update ruby-activerecord3 to 3.0.19.
## Rails 3.0.19
* Fix querying with an empty hash *Damien Mathieu* [CVE-2013-0155]
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:29:19 UTC 2013
Modified Files:
pkgsrc/mail/ruby-actionmailer3: distinfo
Log Message:
Update ruby-actionmailer3 to 3.0.19.
Only version has updated.
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:29:40 UTC 2013
Modified Files:
pkgsrc/devel/ruby-railties: PLIST distinfo
Log Message:
Update ruby-railties to 3.0.19.
Only version has updated.
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Jan 9 12:30:06 UTC 2013
Modified Files:
pkgsrc/www/ruby-rails3: distinfo
Log Message:
Update ruby-rails3 to 3.0.19.
Only version has updated.
Files: