summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorsbd <sbd@pkgsrc.org>2012-08-20 07:54:04 +0000
committersbd <sbd@pkgsrc.org>2012-08-20 07:54:04 +0000
commite14b70ae3eaf3696667cf04eb4403a0b5d93ed84 (patch)
treebc250148cb0522a5ebb63aeae9e08794df765004
parenta20de1b81b5769e70b39fd3d87c86d3b81011b1c (diff)
downloadpkgsrc-e14b70ae3eaf3696667cf04eb4403a0b5d93ed84.tar.gz
Pullup ticket #3903 - requested by taca
Ruby on Rails 3.0.17 security update. Revisions pulled up: - databases/ruby-activerecord3/distinfo 1.15 - devel/ruby-activemodel/distinfo 1.15 - devel/ruby-activesupport3/distinfo 1.16 - devel/ruby-railties/distinfo 1.15 - lang/ruby/rails.mk 1.28 - mail/ruby-actionmailer3/distinfo 1.17 - www/ruby-actionpack3/distinfo 1.16 - www/ruby-activeresource3/distinfo 1.15 - www/ruby-rails3/distinfo 1.16 --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:44:22 UTC 2012 Modified Files: pkgsrc/lang/ruby: rails.mk Log Message: Start update of Ruby on Rails 3.0.17. --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:44:58 UTC 2012 Modified Files: pkgsrc/devel/ruby-activesupport3: distinfo Log Message: Update ruby-activesupport3 to 3.0.17. ## Rails 3.0.17 (Aug 9, 2012) * No changes. --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:45:45 UTC 2012 Modified Files: pkgsrc/devel/ruby-activemodel: distinfo Log Message: Update ruby-activemodel to 3.0.17. ## Rails 3.0.17 (Aug 9, 2012) * No changes. --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:46:45 UTC 2012 Modified Files: pkgsrc/www/ruby-actionpack3: distinfo Log Message: Update ruby-actionpack3 to 3.0.17 ## Rails 3.0.17 (Aug 9, 2012) * There is an XSS vulnerability in the strip_tags helper in Ruby on Rails, the helper doesn't correctly handle malformed html. As a result an attacker can execute arbitrary javascript through the use of specially crafted malformed html. *Marek from Nethemba (www.nethemba.com) & Santiago Pastorino* * When a "prompt" value is supplied to the `select_tag` helper, the "prompt" value is not escaped. If untrusted data is not escaped, and is supplied as the prompt value, there is a potential for XSS attacks. Vulnerable code will look something like this: select_tag("name", options, :prompt => UNTRUSTED_INPUT) *Santiago Pastorino* --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:47:45 UTC 2012 Modified Files: pkgsrc/databases/ruby-activerecord3: distinfo Log Message: Update ruby-activerecord3 to 3.0.17. ## Rails 3.0.17 (Aug 9, 2012) * Fix type_to_sql with text and limit on mysql/mysql2 (GH #7252) --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:48:26 UTC 2012 Modified Files: pkgsrc/mail/ruby-actionmailer3: distinfo Log Message: Update ruby-actionmailer3 to 3.0.17. ## Rails 3.0.17 (Aug 9, 2012) * No changes. --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:49:01 UTC 2012 Modified Files: pkgsrc/devel/ruby-railties: distinfo Log Message: Update ruby-railties to 3.0.17. ## Rails 3.0.17 (Aug 9, 2012) * No changes. --- Module Name: pkgsrc Committed By: taca Date: Sun Aug 12 09:50:41 UTC 2012 Modified Files: pkgsrc/www/ruby-rails3: distinfo Log Message: Update ruby-rails3 to 3.0.17. This is a meta-like package and no changes. --- Module Name: pkgsrc Committed By: taca Date: Wed Aug 15 15:58:23 UTC 2012 Modified Files: pkgsrc/www/ruby-activeresource3: distinfo Log Message: Oops, missed from commit for ruby-activeresource3.
-rw-r--r--databases/ruby-activerecord3/distinfo8
-rw-r--r--devel/ruby-activemodel/distinfo8
-rw-r--r--devel/ruby-activesupport3/distinfo8
-rw-r--r--devel/ruby-railties/distinfo8
-rw-r--r--lang/ruby/rails.mk4
-rw-r--r--mail/ruby-actionmailer3/distinfo8
-rw-r--r--www/ruby-actionpack3/distinfo8
-rw-r--r--www/ruby-activeresource3/distinfo8
-rw-r--r--www/ruby-rails3/distinfo8
9 files changed, 34 insertions, 34 deletions
diff --git a/databases/ruby-activerecord3/distinfo b/databases/ruby-activerecord3/distinfo
index 4468a1afb6a..b1192392f9c 100644
--- a/databases/ruby-activerecord3/distinfo
+++ b/databases/ruby-activerecord3/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.13.2.1 2012/08/12 14:06:57 tron Exp $
+$NetBSD: distinfo,v 1.13.2.2 2012/08/20 07:54:04 sbd Exp $
-SHA1 (activerecord-3.0.16.gem) = e830cc19d7506ee1743bf633b8058076ac608065
-RMD160 (activerecord-3.0.16.gem) = e33d3b2d3d209b238f2d236a7546376ef71041fa
-Size (activerecord-3.0.16.gem) = 345088 bytes
+SHA1 (activerecord-3.0.17.gem) = 0c4a15eb70910870f5d30c68e1ae0e5442af840b
+RMD160 (activerecord-3.0.17.gem) = 3594599470157b4cbfc342cbb915607ab123aa46
+Size (activerecord-3.0.17.gem) = 345088 bytes
diff --git a/devel/ruby-activemodel/distinfo b/devel/ruby-activemodel/distinfo
index 0caabd7b3c6..562940908c4 100644
--- a/devel/ruby-activemodel/distinfo
+++ b/devel/ruby-activemodel/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.13.2.1 2012/08/12 14:06:57 tron Exp $
+$NetBSD: distinfo,v 1.13.2.2 2012/08/20 07:54:05 sbd Exp $
-SHA1 (activemodel-3.0.16.gem) = 80f017ef09ea24a3bb8ca54668d8258a8b74461e
-RMD160 (activemodel-3.0.16.gem) = b704e25e1d60db93acf247822ba76f388c93a0b5
-Size (activemodel-3.0.16.gem) = 38400 bytes
+SHA1 (activemodel-3.0.17.gem) = b20eb9f0e47c338f0dd1f2399082798a7a1e7b6a
+RMD160 (activemodel-3.0.17.gem) = 924d26a9a6edba0c0fbb40d231f49e827e4b89c7
+Size (activemodel-3.0.17.gem) = 38400 bytes
diff --git a/devel/ruby-activesupport3/distinfo b/devel/ruby-activesupport3/distinfo
index e1d9912165b..14e1185def9 100644
--- a/devel/ruby-activesupport3/distinfo
+++ b/devel/ruby-activesupport3/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.14.2.1 2012/08/12 14:06:57 tron Exp $
+$NetBSD: distinfo,v 1.14.2.2 2012/08/20 07:54:05 sbd Exp $
-SHA1 (activesupport-3.0.16.gem) = 1fb10cbee5f6f89bc16e53ea879d457d90f4c8ea
-RMD160 (activesupport-3.0.16.gem) = 9df25c1eeb64bb676f61398027fb7fc0a3b48ea1
-Size (activesupport-3.0.16.gem) = 304128 bytes
+SHA1 (activesupport-3.0.17.gem) = c8a418d1aa31759022126efa1900a011af00ed04
+RMD160 (activesupport-3.0.17.gem) = afe1bd26246e1f5d9ac4afb6d72cafd51e11ad34
+Size (activesupport-3.0.17.gem) = 304640 bytes
diff --git a/devel/ruby-railties/distinfo b/devel/ruby-railties/distinfo
index 587c0f3873c..c76251ce576 100644
--- a/devel/ruby-railties/distinfo
+++ b/devel/ruby-railties/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.13.2.1 2012/08/12 14:06:57 tron Exp $
+$NetBSD: distinfo,v 1.13.2.2 2012/08/20 07:54:05 sbd Exp $
-SHA1 (railties-3.0.16.gem) = e01a2d6ae8a92cbe9f99137c45610dc7a2945fbc
-RMD160 (railties-3.0.16.gem) = 490b3b06d409d6a87bae71eeb93375cd66b28e35
-Size (railties-3.0.16.gem) = 1550336 bytes
+SHA1 (railties-3.0.17.gem) = 583b946186d385b0c18ed9455b76aa6153278748
+RMD160 (railties-3.0.17.gem) = cc67d3ea58f759bb74f29f1c1f9f0ba2dea108b7
+Size (railties-3.0.17.gem) = 1550336 bytes
diff --git a/lang/ruby/rails.mk b/lang/ruby/rails.mk
index 4abd38a106b..5b50c03804b 100644
--- a/lang/ruby/rails.mk
+++ b/lang/ruby/rails.mk
@@ -1,4 +1,4 @@
-# $NetBSD: rails.mk,v 1.24.2.3 2012/08/12 14:48:59 tron Exp $
+# $NetBSD: rails.mk,v 1.24.2.4 2012/08/20 07:54:05 sbd Exp $
.if !defined(_RUBY_RAILS_MK)
_RUBY_RAILS_MK= # defined
@@ -38,7 +38,7 @@ _RUBY_RAILS_MK= # defined
#
# current Ruby on Rails versions.
#
-RUBY_RAILS3_VERSION?= 3.0.16
+RUBY_RAILS3_VERSION?= 3.0.17
RUBY_RAILS31_VERSION?= 3.1.7
RUBY_RAILS32_VERSION?= 3.2.7
diff --git a/mail/ruby-actionmailer3/distinfo b/mail/ruby-actionmailer3/distinfo
index 2557712bc3c..21130f79eca 100644
--- a/mail/ruby-actionmailer3/distinfo
+++ b/mail/ruby-actionmailer3/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.15.2.1 2012/08/12 14:06:58 tron Exp $
+$NetBSD: distinfo,v 1.15.2.2 2012/08/20 07:54:05 sbd Exp $
-SHA1 (actionmailer-3.0.16.gem) = c7c24eb1d5faca6106ca604586e97f10207114e9
-RMD160 (actionmailer-3.0.16.gem) = 37550a93c37c4ff002ff55e1dbcb4bba3ef1c706
-Size (actionmailer-3.0.16.gem) = 31232 bytes
+SHA1 (actionmailer-3.0.17.gem) = 80509028b8ab3b7e2f234e1b9d71413d32c2c08c
+RMD160 (actionmailer-3.0.17.gem) = de2714c7e29d92f3a0b1a6ef794da3655fef20b0
+Size (actionmailer-3.0.17.gem) = 31232 bytes
diff --git a/www/ruby-actionpack3/distinfo b/www/ruby-actionpack3/distinfo
index 8422ad97845..d3e495f0421 100644
--- a/www/ruby-actionpack3/distinfo
+++ b/www/ruby-actionpack3/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.14.2.1 2012/08/12 14:06:58 tron Exp $
+$NetBSD: distinfo,v 1.14.2.2 2012/08/20 07:54:05 sbd Exp $
-SHA1 (actionpack-3.0.16.gem) = e07eb21b957a1d3fc08c8dd49c709cebe5274625
-RMD160 (actionpack-3.0.16.gem) = 9bcb8da14d62e84dfc8a181872634f1c5f2a3eec
-Size (actionpack-3.0.16.gem) = 355328 bytes
+SHA1 (actionpack-3.0.17.gem) = d376046160772c1ef74804ed24173c998482b7b7
+RMD160 (actionpack-3.0.17.gem) = 498c240a97f86c3f6f4a7d336a5d16952d513aba
+Size (actionpack-3.0.17.gem) = 355840 bytes
diff --git a/www/ruby-activeresource3/distinfo b/www/ruby-activeresource3/distinfo
index bec8dd65a15..5bd9a09c71d 100644
--- a/www/ruby-activeresource3/distinfo
+++ b/www/ruby-activeresource3/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.13.2.1 2012/08/12 14:06:58 tron Exp $
+$NetBSD: distinfo,v 1.13.2.2 2012/08/20 07:54:05 sbd Exp $
-SHA1 (activeresource-3.0.16.gem) = fcb3d3135079b42999874003fbdbb16abd3194c8
-RMD160 (activeresource-3.0.16.gem) = 78d84a7d96242c94167f16253d7cf8670304bef2
-Size (activeresource-3.0.16.gem) = 34816 bytes
+SHA1 (activeresource-3.0.17.gem) = 56069051b02328f501c03611cf93cbf3bdd47dc2
+RMD160 (activeresource-3.0.17.gem) = fb0efc6b1bde89e69853c1e4d9663bdcf4bde5bf
+Size (activeresource-3.0.17.gem) = 34816 bytes
diff --git a/www/ruby-rails3/distinfo b/www/ruby-rails3/distinfo
index 110473f85ae..059416fbd85 100644
--- a/www/ruby-rails3/distinfo
+++ b/www/ruby-rails3/distinfo
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.14.2.1 2012/08/12 14:06:58 tron Exp $
+$NetBSD: distinfo,v 1.14.2.2 2012/08/20 07:54:05 sbd Exp $
-SHA1 (rails-3.0.16.gem) = aa80d0e9a85d25f20275f64a2a41e81c9a3a1bc2
-RMD160 (rails-3.0.16.gem) = 8c046007aa07a9abdbc0018a36c6f2d77467e6fc
-Size (rails-3.0.16.gem) = 3584 bytes
+SHA1 (rails-3.0.17.gem) = ed0ee16683c25c900bb10d63bd0b2389e7bf2a93
+RMD160 (rails-3.0.17.gem) = 9736faf2ae0eb4c1d13c5cb81c2b192d1dc77814
+Size (rails-3.0.17.gem) = 3584 bytes