Subject: CVS commit: pkgsrc/lang
From: Takahiro Kambe
Date: 2024-04-25 16:51:54
Message id: 20240425145154.B8284FA2C@cvs.NetBSD.org

Log Message:
lang/ruby31-base: update to 3.1.5

This is security release.  Note CVE-2024-27280 and CVE-2024-27281 were
already fixed by ruby31-base-3.1.4nb3.

3.1.5 (2024-04-23)

Security release.

* CVE-2024-27282: Arbitrary memory address read vulnerability with Regex
  search
* CVE-2024-27281: RCE vulnerability with .rdoc_options in RDoc
* CVE-2024-27280: Buffer overread vulnerability in StringIO

Files:
RevisionActionfile
1.276modifypkgsrc/lang/ruby/rubyversion.mk
1.14modifypkgsrc/lang/ruby31-base/Makefile
1.13modifypkgsrc/lang/ruby31-base/distinfo
1.1removepkgsrc/lang/ruby31-base/patches/patch-ext_stringio_stringio.c
1.1removepkgsrc/lang/ruby31-base/patches/patch-lib_rdoc_store.rb
1.1removepkgsrc/lang/ruby31-base/patches/patch-lib_rdoc_version.rb
1.1removepkgsrc/lang/ruby31-base/patches/patch-lib_uri_rfc2396__parser.rb
1.1removepkgsrc/lang/ruby31-base/patches/patch-lib_uri_rfc3986__parser.rb
1.1removepkgsrc/lang/ruby31-base/patches/patch-lib_uri_version.rb
1.1removepkgsrc/lang/ruby31-base/patches/patch-test_stringio_test__stringio.rb