Subject: CVS commit: pkgsrc/www/ruby-rack
From: Takahiro Kambe
Date: 2023-03-05 15:24:12
Message id: 20230305142412.F2AE0FA90@cvs.NetBSD.org

Log Message:
www/ruby-rack: update to 3.0.4.2

3.0.4.2 (2023-03-02)

* Limit all multipart parts, not just files

  Previously we would limit the number of multipart parts which were files,
  but not other parts.  In some cases this could cause parsing of
  maliciously crafted inputs to take longer than expected.

  [CVE-2023-27530]

Files:
RevisionActionfile
1.34modifypkgsrc/www/ruby-rack/Makefile
1.32modifypkgsrc/www/ruby-rack/distinfo