<feed xmlns='http://www.w3.org/2005/Atom'>
<title>pkgsrc/devel/ruby-curses, branch pkgsrc_2008Q2</title>
<subtitle>[no description]</subtitle>
<id>https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc_2008Q2</id>
<link rel='self' href='https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc_2008Q2'/>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/'/>
<updated>2008-08-12T11:22:11Z</updated>
<entry>
<title>pullup ticket #2481 - requested by taca</title>
<updated>2008-08-12T11:22:11Z</updated>
<author>
<name>rtr</name>
<email>rtr</email>
</author>
<published>2008-08-12T11:22:11Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=4f14e7f145cd2ec66b1ebf135affb9831ab70995'/>
<id>urn:sha1:4f14e7f145cd2ec66b1ebf135affb9831ab70995</id>
<content type='text'>
ruby-curses, ruby, ruby18-base, ruby-tk: security fix

revisions pulled up
pkgsrc/lang/ruby/rubyversion.mk		1.44
pkgsrc/lang/ruby18-base/distinfo	1.17
pkgsrc/devel/ruby-curses/distinfo	1.33
pkgsrc/x11/ruby-tk/distinfo		1.20

   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Mon Aug 11 06:58:33 UTC 2008

   Modified Files:
   	pkgsrc/lang/ruby: rubyversion.mk
   	pkgsrc/lang/ruby18-base: distinfo

   Log Message:
   Update ruby18-base to 1.8.7.72 (Ruby 1.8.7-p72).

   These packages are implicitly updated with distfile update only.

   	databases/ruby-gdbm
   	devel/ruby-readline
   	lang/ruby
   	lang/ruby18

   Here's quote from release announce:

   	Sorry for a fuss, but it turned out that taintness check of dl in last
   	releases I made was incomplete. Here are fixes for that.

   And relevant changes:

   Mon Aug 11 09:37:17 2008  Yukihiro Matsumoto  &lt;matz@ruby-lang.org&gt;

   	* ext/dl/dl.c (rb_str_to_ptr): should propagate taint to dlptr.

   	* ext/dl/dl.c (rb_ary_to_ptr): ditto.

   	* ext/dl/sym.c (rb_dlsym_call): should check taint of DLPtrData as
   	  well.
   ------------------------------------------------------------------------
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Mon Aug 11 06:59:40 UTC 2008

   Modified Files:
   	pkgsrc/devel/ruby-curses: distinfo

   Log Message:
   Update ruby-curses package to 1.8.7.72.
   It is distfile change only.
   ------------------------------------------------------------------------
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Mon Aug 11 06:59:55 UTC 2008

   Modified Files:
   	pkgsrc/x11/ruby-tk: distinfo

   Log Message:
   Update ruby-curses package to 1.8.7.72.
   It is distfile change only.
</content>
</entry>
<entry>
<title>Pullup ticket 2473 - requested by taca</title>
<updated>2008-08-08T14:37:50Z</updated>
<author>
<name>ghen</name>
<email>ghen</email>
</author>
<published>2008-08-08T14:37:50Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=35821c18e266453077fed8ba802c7f11d26f8446'/>
<id>urn:sha1:35821c18e266453077fed8ba802c7f11d26f8446</id>
<content type='text'>
security update for ruby

- pkgsrc/devel/ruby-curses/distinfo			1.16
- pkgsrc/lang/ruby/rubyversion.mk			1.43
- pkgsrc/lang/ruby18-base/Makefile			1.46
- pkgsrc/lang/ruby18-base/distinfo			1.32
- pkgsrc/lang/ruby18-base/patches/patch-ad		removed
- pkgsrc/x11/ruby-tk/distinfo				1.19

   Module Name:		pkgsrc
   Committed By:	taca
   Date:		Fri Aug  8 12:38:59 UTC 2008

   Modified Files:
	   pkgsrc/lang/ruby: rubyversion.mk

   Log Message:
   Start update of Ruby 1.8.7 patchlevel 71.
---
   Module Name:		pkgsrc
   Committed By:	taca
   Date:		Fri Aug  8 12:42:44 UTC 2008

   Modified Files:
	   pkgsrc/lang/ruby18-base: Makefile distinfo
   Removed Files:
	   pkgsrc/lang/ruby18-base/patches: patch-ad

   Log Message:
   Update ruby18-base to 1.8.7.71.

   pkgsrc change:

	   Apply fix for sunpro compilre, provided by PR pkg/37771 from
	   Naoto Morishima.

   This release includes fix for multiple vulnerabilities.

   http://www.ruby-lang.org/en/news/2008/08/08/multiple-vulnerabilities-in-ruby/

	   * Several vulnerabilities in safe level
	   * DoS vulnerability in WEBrick
	   * Lack of taintness check in dl
	   * DNS spoofing vulnerability in resolv.rb

   Full changes are too many, please refer ChangeLog file.
---
   Module Name:		pkgsrc
   Committed By:	taca
   Date:		Fri Aug  8 12:43:51 UTC 2008

   Modified Files:
	   pkgsrc/devel/ruby-curses: distinfo

   Log Message:
   Update ruby-curses package to 1.8.7.71.

   This is version update only, no functional change in this ruby extention.
---
   Module Name:		pkgsrc
   Committed By:	taca
   Date:		Fri Aug  8 12:44:51 UTC 2008

   Modified Files:
	   pkgsrc/x11/ruby-tk: distinfo

   Log Message:
   Update ruby-tk package to 1.8.7.71.

   This is version update only, no functional change in this ruby extention.
</content>
</entry>
<entry>
<title>Update distinfo for Ruby 1.8.7 patchlevel 22.</title>
<updated>2008-06-20T15:40:25Z</updated>
<author>
<name>taca</name>
<email>taca</email>
</author>
<published>2008-06-20T15:40:25Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=ab2a6066daf6196c527c10b27305955ba08b7dc9'/>
<id>urn:sha1:ab2a6066daf6196c527c10b27305955ba08b7dc9</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Update ruby18-curses package to 1.8.7.</title>
<updated>2008-06-19T14:36:53Z</updated>
<author>
<name>taca</name>
<email>taca</email>
</author>
<published>2008-06-19T14:36:53Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=adeca401ea554942df84f9f40d8a1de7c02a0568'/>
<id>urn:sha1:adeca401ea554942df84f9f40d8a1de7c02a0568</id>
<content type='text'>
Since chanes are too much to write here, please refer

	http://svn.ruby-lang.org/repos/ruby/tags/v1_8_7/NEWS
	http://svn.ruby-lang.org/repos/ruby/tags/v1_8_7/ChangeLog

	http://svn.ruby-lang.org/repos/ruby/tags/v1_8_7_17/NEWS
	http://svn.ruby-lang.org/repos/ruby/tags/v1_8_7_17/ChangeLog
</content>
</entry>
<entry>
<title>+ Support user-destdir installation.</title>
<updated>2008-03-13T21:55:48Z</updated>
<author>
<name>jlam</name>
<email>jlam</email>
</author>
<published>2008-03-13T21:55:48Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=8880f632f41ee998007e9364bab74603b51d2181'/>
<id>urn:sha1:8880f632f41ee998007e9364bab74603b51d2181</id>
<content type='text'>
+ Include termcap.buildlink3.mk because curses.so is linked against
  -ltermcap, so we need it to be transformed into the right library
  depending on the platform and PREFER_* settings.

  Bump the PKGREVISION to 1.

+ Because we are asking for ncurses (by include ncurses/buildlink3.mk),
  check for &lt;ncurses.h&gt; and -lncurses instead of &lt;curses.h&gt; and
  -lcurses.  The curses.c file gets it wrong otherwise.
</content>
</entry>
<entry>
<title>Update ruby pakcages to 1.8.6.114 (1.8.6-p114).</title>
<updated>2008-03-09T13:31:18Z</updated>
<author>
<name>taca</name>
<email>taca</email>
</author>
<published>2008-03-09T13:31:18Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=e66b8c892af0c3a0d3b5be71b5baba1c7a50c84d'/>
<id>urn:sha1:e66b8c892af0c3a0d3b5be71b5baba1c7a50c84d</id>
<content type='text'>
It main chagnes are security fix of WEBrick library.


Mon Mar  3 23:34:13 2008  GOTOU Yuuzou  &lt;gotoyuzo@notwork.org&gt;

	* lib/webrick/httpservlet/filehandler.rb: should normalize path
	  separators in path_info to prevent directory traversal attacks
	  on DOSISH platforms.
	  reported by Digital Security Research Group [DSECRG-08-026].

	* lib/webrick/httpservlet/filehandler.rb: pathnames which have
	  not to be published should be checked case-insensitively.

Mon Dec  3 08:13:52 2007  Kouhei Sutou  &lt;kou@cozmixng.org&gt;

	* test/rss/test_taxonomy.rb, test/rss/test_parser_1.0.rb,
	  test/rss/test_image.rb, test/rss/rss-testcase.rb: ensured
	  declaring XML namespaces.
</content>
</entry>
<entry>
<title>Update Ruby packages to 1.8.6-p111.</title>
<updated>2007-10-06T06:13:35Z</updated>
<author>
<name>taca</name>
<email>taca</email>
</author>
<published>2007-10-06T06:13:35Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=280e880c07a6cc5649aec465f7700c2144fd38c2'/>
<id>urn:sha1:280e880c07a6cc5649aec465f7700c2144fd38c2</id>
<content type='text'>
No change; DISTFILES update only.
</content>
</entry>
<entry>
<title>Update Ruby to 1.8.6-p110.</title>
<updated>2007-09-24T22:00:20Z</updated>
<author>
<name>taca</name>
<email>taca</email>
</author>
<published>2007-09-24T22:00:20Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=3c7cfe661757fdb27c022f16a060104c140505f5'/>
<id>urn:sha1:3c7cfe661757fdb27c022f16a060104c140505f5</id>
<content type='text'>
Approved by wiz@.

Nothing changes with these package except distfile.
</content>
</entry>
<entry>
<title>Update to 1.8.6 patchlevel 36.</title>
<updated>2007-09-09T14:19:01Z</updated>
<author>
<name>taca</name>
<email>taca</email>
</author>
<published>2007-09-09T14:19:01Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=958c707fc696c24fde09ab8879d346b7e5580878'/>
<id>urn:sha1:958c707fc696c24fde09ab8879d346b7e5580878</id>
<content type='text'>
Changes are too many, please see ChangeLog:

    http://svn.ruby-lang.org/repos/ruby/tags/v1_8_6_36/ChangeLog
</content>
</entry>
<entry>
<title>Updating Ruby to 1.8.6; ruby18-curses</title>
<updated>2007-03-15T16:42:32Z</updated>
<author>
<name>taca</name>
<email>taca</email>
</author>
<published>2007-03-15T16:42:32Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=db1240bcd7636414d6d1554df70a74524c58f4c9'/>
<id>urn:sha1:db1240bcd7636414d6d1554df70a74524c58f4c9</id>
<content type='text'>
- discontinue use of RUBY_PATCH_DATE.
- Introduce RUBY_PATCH_LEVEL.

pkgsrc's ruby tracks Ruby's patch release and avoid to maintain
its own patch files (with RUBY_PATCH_DATE).

Changes are too much, please see ChangeLog file.
</content>
</entry>
</feed>
