Subject: CVS commit: [pkgsrc-2021Q4] pkgsrc
From: Benny Siegert
Date: 2022-03-03 20:12:00
Message id: 20220303191200.A55F5FB24@cvs.NetBSD.org

Log Message:
Pullup ticket #6589 - requested by taca
www/wuby-rails61: security fix

Revisions pulled up:
- databases/ruby-activerecord61/distinfo                        1.10
- devel/ruby-activejob61/distinfo                               1.10
- devel/ruby-activemodel61/distinfo                             1.10
- devel/ruby-activestorage61/distinfo                           1.10
- devel/ruby-activesupport61/distinfo                           1.10
- devel/ruby-railties61/distinfo                                1.10
- lang/ruby/rails.mk                                            1.113
- mail/ruby-actionmailbox61/distinfo                            1.10
- mail/ruby-actionmailer61/distinfo                             1.10
- textproc/ruby-actiontext61/distinfo                           1.10
- www/ruby-actioncable61/distinfo                               1.10
- www/ruby-actionpack61/distinfo                                1.10
- www/ruby-actionview61/distinfo                                1.10
- www/ruby-rails61/distinfo                                     1.10

---
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Sun Feb 13 07:35:06 UTC 2022

   Modified Files:
   	pkgsrc/databases/ruby-activerecord61: distinfo
   	pkgsrc/devel/ruby-activejob61: distinfo
   	pkgsrc/devel/ruby-activemodel61: distinfo
   	pkgsrc/devel/ruby-activestorage61: distinfo
   	pkgsrc/devel/ruby-activesupport61: distinfo
   	pkgsrc/devel/ruby-railties61: distinfo
   	pkgsrc/lang/ruby: rails.mk
   	pkgsrc/mail/ruby-actionmailbox61: distinfo
   	pkgsrc/mail/ruby-actionmailer61: distinfo
   	pkgsrc/textproc/ruby-actiontext61: distinfo
   	pkgsrc/www/ruby-actioncable61: distinfo
   	pkgsrc/www/ruby-actionpack61: distinfo
   	pkgsrc/www/ruby-actionview61: distinfo
   	pkgsrc/www/ruby-rails61: distinfo

   Log Message:
   www/ruby-rails61: update to 6.1.4.6

   This update contains security fix for CVE-2022-23633 in ruby-actionpack61.

   Active Support 6.1.4.6 (2022-02-11)

   * Fix Reloader method signature to work with the new Executor signature.

   Action Pack 6.1.4.5 (2022-02-11)

   * Under certain circumstances, the middleware isn't informed that the
     response body has been fully closed which result in request state
     not being fully reset before the next request.

     [CVE-2022-23633]

   Other packages have no change.

Files:
RevisionActionfile
1.9.2.1modifypkgsrc/databases/ruby-activerecord61/distinfo
1.9.2.1modifypkgsrc/devel/ruby-activejob61/distinfo
1.9.2.1modifypkgsrc/devel/ruby-activemodel61/distinfo
1.9.2.1modifypkgsrc/devel/ruby-activestorage61/distinfo
1.9.2.1modifypkgsrc/devel/ruby-activesupport61/distinfo
1.9.2.1modifypkgsrc/devel/ruby-railties61/distinfo
1.109.2.3modifypkgsrc/lang/ruby/rails.mk
1.9.2.1modifypkgsrc/mail/ruby-actionmailbox61/distinfo
1.9.2.1modifypkgsrc/mail/ruby-actionmailer61/distinfo
1.9.2.1modifypkgsrc/textproc/ruby-actiontext61/distinfo
1.9.2.1modifypkgsrc/www/ruby-actioncable61/distinfo
1.9.2.1modifypkgsrc/www/ruby-actionpack61/distinfo
1.9.2.1modifypkgsrc/www/ruby-actionview61/distinfo
1.9.2.1modifypkgsrc/www/ruby-rails61/distinfo