diff options
author | taca <taca@pkgsrc.org> | 2021-05-08 14:02:33 +0000 |
---|---|---|
committer | taca <taca@pkgsrc.org> | 2021-05-08 14:02:33 +0000 |
commit | d31768e9f1527a3d0e25e7d1567b2a0edba1c14b (patch) | |
tree | ff09b7c2f1cdac2d4d8306b97d7c6f865a7afd76 /www/ruby-rails60 | |
parent | 1b999035d5aa6308e3874498b9cbf47d24d3069f (diff) | |
download | pkgsrc-d31768e9f1527a3d0e25e7d1567b2a0edba1c14b.tar.gz |
www/ruby-rails60: update to 6.0.3.7
Real changes are in www/ruby-actionpack60 only.
## Rails 6.0.3.7 (May 05, 2021) ##
* Prevent catastrophic backtracking during mime parsing
CVE-2021-22902
* Prevent regex DoS in HTTP token authentication
CVE-2021-22904
* Prevent string polymorphic route arguments.
`url_for` supports building polymorphic URLs via an array
of arguments (usually symbols and records). If a developer passes a
user input array, strings can result in unwanted route helper calls.
CVE-2021-22885
*Gannon McGibbon*
Diffstat (limited to 'www/ruby-rails60')
-rw-r--r-- | www/ruby-rails60/distinfo | 10 |
1 files changed, 5 insertions, 5 deletions
diff --git a/www/ruby-rails60/distinfo b/www/ruby-rails60/distinfo index a89e1251956..9f0c146d8c0 100644 --- a/www/ruby-rails60/distinfo +++ b/www/ruby-rails60/distinfo @@ -1,6 +1,6 @@ -$NetBSD: distinfo,v 1.8 2021/04/11 13:24:57 taca Exp $ +$NetBSD: distinfo,v 1.9 2021/05/08 14:02:34 taca Exp $ -SHA1 (rails-6.0.3.6.gem) = 88b09f78d4ae0837105a9eb3d049059bb3a9ba2b -RMD160 (rails-6.0.3.6.gem) = fb3e15a48f2ea8e18d2cea48dbf87529e4d43042 -SHA512 (rails-6.0.3.6.gem) = c77ee2d3705800721aea6dcdba9c6b4fc0b6d7e1ac47df9c90535cc8ea6603d468ba31e64d170ca7fc9d87d078337b0192ab4f79808e419decf7e4421a052cf1 -Size (rails-6.0.3.6.gem) = 6656 bytes +SHA1 (rails-6.0.3.7.gem) = b116f7b8faceaf889953d3bdb22d36f3a8c9a8fa +RMD160 (rails-6.0.3.7.gem) = c2e68cc12474f3ee9409b3eca326faad867b4d2d +SHA512 (rails-6.0.3.7.gem) = 15352bf9a50f9d48c8ece56e65e95ead9dc98ca7aa6892ebbfce4fa99434cb1f6c71388434d0cd80f031037e7094a8e528c252faba2658bd650027b61d868616 +Size (rails-6.0.3.7.gem) = 6656 bytes |