summaryrefslogtreecommitdiff
path: root/www
diff options
context:
space:
mode:
authortaca <taca@pkgsrc.org>2021-07-04 06:24:45 +0000
committertaca <taca@pkgsrc.org>2021-07-04 06:24:45 +0000
commitaf166299b187b225d2d25796f3d7a9b17fc35635 (patch)
treeb60fe7b6b8cecf164d8fa7e518a165fa669ab91b /www
parent5e96a3322f258f4cb3bcd8d88f9b69b2e78a8313 (diff)
downloadpkgsrc-af166299b187b225d2d25796f3d7a9b17fc35635.tar.gz
www/ruby-rails52: update to 5.2.6
Ruby on Rails 5.2.6 (2021-05-05) There are changes in www/ruby-actionpack52 only, including security fix. Action Pack * Accept base64_urlsafe CSRF tokens to make forward compatible. Base64 strict-encoded CSRF tokens are not inherently websafe, which makes them difficult to deal with. For example, the common practice of sending the CSRF token to a browser in a client-readable cookie does not work properly out of the box: the value has to be url-encoded and decoded to survive transport. In this version, we generate Base64 urlsafe-encoded CSRF tokens, which are inherently safe to transport. Validation accepts both urlsafe tokens, and strict-encoded tokens for backwards compatibility. How the tokes are encoded is controllr by the action_controller.urlsafe_csrf_tokens config. In Rails 5.2.5, the CSRF token format was accidentally changed to urlsafe-encoded. Atention: If you already upgraded your application to 5.2.5, set the config urlsafe_csrf_tokens to true, otherwise your form submission will start to fail during the deploy of this new version. Rails.application.config.action_controller.urlsafe_csrf_tokens = true If you are upgrading from 5.2.4.x, you don't need to change this configuration. Scott Blum, Étienne Barrié
Diffstat (limited to 'www')
-rw-r--r--www/ruby-actioncable52/distinfo10
-rw-r--r--www/ruby-actionpack52/distinfo10
-rw-r--r--www/ruby-actionview52/distinfo10
-rw-r--r--www/ruby-rails52/distinfo10
4 files changed, 20 insertions, 20 deletions
diff --git a/www/ruby-actioncable52/distinfo b/www/ruby-actioncable52/distinfo
index c1f545781b3..0b2c011844e 100644
--- a/www/ruby-actioncable52/distinfo
+++ b/www/ruby-actioncable52/distinfo
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.7 2021/04/11 13:20:08 taca Exp $
+$NetBSD: distinfo,v 1.8 2021/07/04 06:24:46 taca Exp $
-SHA1 (actioncable-5.2.5.gem) = 0571a57ee69384f0ddfc67993882cf21ad79a391
-RMD160 (actioncable-5.2.5.gem) = 5298785dbc99110f9a898a2a33511008ef9f4fea
-SHA512 (actioncable-5.2.5.gem) = 332169872661a7f0d98fa15f68408b38c400b49ac223eafc9c334809176b7168e2d4e6a29d6fd37e6fdc913e70360be5cec63ec7d2f339ce44208f1112456441
-Size (actioncable-5.2.5.gem) = 41472 bytes
+SHA1 (actioncable-5.2.6.gem) = 659c309060501361e47ea4e341250f247f1aeeb1
+RMD160 (actioncable-5.2.6.gem) = f2930d67254f19d7dc038e56de56b55a9c6ee313
+SHA512 (actioncable-5.2.6.gem) = bed2afe3201b12fe56b2aa50b9f9b10e1be41a7e17899edf12d238d4580cf9e38769a8d99ff44018a89c84a39288e057e88973a8f786fd66dc1d8b91e48ad35b
+Size (actioncable-5.2.6.gem) = 41472 bytes
diff --git a/www/ruby-actionpack52/distinfo b/www/ruby-actionpack52/distinfo
index 4559922916e..6ff4b83e1c9 100644
--- a/www/ruby-actionpack52/distinfo
+++ b/www/ruby-actionpack52/distinfo
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.7 2021/04/11 13:20:08 taca Exp $
+$NetBSD: distinfo,v 1.8 2021/07/04 06:24:46 taca Exp $
-SHA1 (actionpack-5.2.5.gem) = 3958c4798d378ac68b2292e8307ec9dc3eba5762
-RMD160 (actionpack-5.2.5.gem) = 70c93206de6bd00284cc93f1235c342520596a2d
-SHA512 (actionpack-5.2.5.gem) = bf8910d579c36adbdcd008fa3f2fd9d1c1c982607493f2c096e6a440e4bfacd4d36d595d7de0b403d7e6bbf87db29c32e2d3b1b71a1643f63b4def6b03ddcd6a
-Size (actionpack-5.2.5.gem) = 212992 bytes
+SHA1 (actionpack-5.2.6.gem) = 9e027ccd6af9a2b9aba6d31de1bd8fc114ea8a08
+RMD160 (actionpack-5.2.6.gem) = 88222a5957d9269e591e57608d53648f67df6e66
+SHA512 (actionpack-5.2.6.gem) = 822613c9c59855bd807986f727ab0b0ef28fb9d7910e9c31d19bb851456de0851a36a877fd8f0b941ce8de916fc73fe70c3910bb931491543ad5c66eb9189586
+Size (actionpack-5.2.6.gem) = 214528 bytes
diff --git a/www/ruby-actionview52/distinfo b/www/ruby-actionview52/distinfo
index 9b41697369d..da3a3914984 100644
--- a/www/ruby-actionview52/distinfo
+++ b/www/ruby-actionview52/distinfo
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.7 2021/04/11 13:20:08 taca Exp $
+$NetBSD: distinfo,v 1.8 2021/07/04 06:24:46 taca Exp $
-SHA1 (actionview-5.2.5.gem) = e58ceda387bd52894353771fb0bd8ced7c2c849a
-RMD160 (actionview-5.2.5.gem) = 83ae75a9cfa3235f9bbbbe75af0605a05e03a0d8
-SHA512 (actionview-5.2.5.gem) = c2fbeff644fe144bc8ec0d0f30332843aed447be69bf7f9b184ff4fb9ee92b30a873ee2ef1996b27450eade80545d06749e49fcbd07b4ee5a6adf637b36bf9d6
-Size (actionview-5.2.5.gem) = 163328 bytes
+SHA1 (actionview-5.2.6.gem) = f91c22fe14532d77ab0803aaf30e7aa4b07f077c
+RMD160 (actionview-5.2.6.gem) = 3b7723c571483eb0ba9a11aaafb65e936a3ef870
+SHA512 (actionview-5.2.6.gem) = c1273789a55771ab94411e2ca85d2b8b615e6b76cb49e644b08655252dbd19405104f3d07db1b1f05d7bd3892ffb3838331f352d319cffb26545c27c707a5ec8
+Size (actionview-5.2.6.gem) = 163328 bytes
diff --git a/www/ruby-rails52/distinfo b/www/ruby-rails52/distinfo
index 2e44ff86576..c01962b90de 100644
--- a/www/ruby-rails52/distinfo
+++ b/www/ruby-rails52/distinfo
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.7 2021/04/11 13:20:09 taca Exp $
+$NetBSD: distinfo,v 1.8 2021/07/04 06:24:46 taca Exp $
-SHA1 (rails-5.2.5.gem) = 3147971b58ec5dcdc16ef013d2158f5a54518cc9
-RMD160 (rails-5.2.5.gem) = 0ea6a64f420169e5ff3d91d73b522173a578360e
-SHA512 (rails-5.2.5.gem) = 00b1708099ec10ab22e43bf67395cebce1a502c3d4ae672b7bac77a01937cea86fe8cecf514e10e90f28bb02e524d19e2058104880d4fcb99746eb14177d31a1
-Size (rails-5.2.5.gem) = 6656 bytes
+SHA1 (rails-5.2.6.gem) = 94ca9257e0a6dd8d4f4308e0b03de22bd48f943f
+RMD160 (rails-5.2.6.gem) = 982d48596cf8e3aeb25787b066e9a1557e901132
+SHA512 (rails-5.2.6.gem) = 9c6965dd1ad4d5a12f7116e372f7b38bd95a93d24d93b66860086922aedf30aa1ad5cc27578f87d72228d893c1d73b431c195b0d1f8b1bc5a645b00fead05f9d
+Size (rails-5.2.6.gem) = 6656 bytes