Path to this page:
Subject: CVS commit: [pkgsrc-2020Q1] pkgsrc/lang
From: Benny Siegert
Date: 2020-04-28 18:16:24
Message id: 20200428161624.37B7DFB27@cvs.NetBSD.org
Log Message:
Pullup ticket #6166 - requested by taca
lang/ruby25-base: security fix
Revisions pulled up:
- lang/ruby/rubyversion.mk 1.220
- lang/ruby25-base/Makefile 1.16
- lang/ruby25-base/PLIST 1.4
- lang/ruby25-base/distinfo 1.13
---
Module Name: pkgsrc
Committed By: taca
Date: Wed Apr 1 15:25:26 UTC 2020
Modified Files:
pkgsrc/lang/ruby: rubyversion.mk
pkgsrc/lang/ruby25-base: Makefile PLIST distinfo
Log Message:
lang/ruby25-base: update to 2.5.8
Update ruby25-base (and ruby25) to 2.5.8.
2.5.8 (2020-03-31)
This release includes security fixes. Please check the topics below for
details.
* CVE-2020-16255: Unsafe Object Creation Vulnerability in JSON (Additional
fix)
* CVE-2020-10933: Heap exposure vulnerability in the socket library
Files: