Path to this page:
Subject: CVS commit: pkgsrc/textproc/ruby-redcloth
From: Takahiro Kambe
Date: 2016-10-18 16:43:14
Message id: 20161018144314.C5FB0FBD2@cvs.NetBSD.org
Log Message:
Update ruby-redcloth to 4.3.2.
pkgsrc change: Add support for pkg_alternatives.
== 4.3.2 / May 23rd, 2016
* Fix additional case for CVE-2012-6684 [Joshua Siler]
== 4.3.1 / May 17th, 2016
* Fix additional case for CVE-2012-6684 [Joshua Siler]
== 4.3.0 / April 29th, 2016
* Remove JRuby and Windows cross compilation and support
* Add Ruby 2.2.3 testing and support
* include CVE-2012-6684 fix [Tomas Pospisek]
* fix by [Antonio Terceiro]
* see \
http://sources.debian.net/src/ruby-redcloth/4.2.9-4/debian/patches/0001-Filter-out-javascript-links-when-using-filter_html-o.patch/
* vulnerability reported by [Kousuke Ebihara]
* see http://co3k.org/blog/redcloth-unfixed-xss-en
== 4.2.9.1 / February 24, 2015
* Lazy-load latex_entities.yml [Charlie Somerville]
Files: