From 6eb4aeb7bc355f334f698b432bca739509c1978b Mon Sep 17 00:00:00 2001 From: taca Date: Wed, 13 Jul 2022 14:41:07 +0000 Subject: www/ruby-rails52: update to 5.2.8.1 Rails 5.2.8.1 (2022-07-12) updates databases/ruby-activerecord52 only. databases/ruby-activerecord52 * Change ActiveRecord::Coders::YAMLColumn default to safe_load This adds two new configuration options The configuration options are as follows: o config.active_storage.use_yaml_unsafe_load When set to true, this configuration option tells Rails to use the old "unsafe" YAML loading strategy, maintaining the existing behavior but leaving the possible escalation vulnerability in place. Setting this option to true is *not* recommended, but can aid in upgrading. o config.active_record.yaml_column_permitted_classes The "safe YAML" loading method does not allow all classes to be deserialized by default. This option allows you to specify classes deemed "safe" in your application. For example, if your application uses Symbol and Time in serialized data, you can add Symbol and Time to the allowed list as follows: config.active_record.yaml_column_permitted_classes = [Symbol, Date, Time] [CVE-2022-32224] --- www/ruby-actioncable52/distinfo | 8 ++++---- www/ruby-actionpack52/distinfo | 8 ++++---- www/ruby-actionview52/distinfo | 8 ++++---- www/ruby-rails52/distinfo | 8 ++++---- 4 files changed, 16 insertions(+), 16 deletions(-) (limited to 'www') diff --git a/www/ruby-actioncable52/distinfo b/www/ruby-actioncable52/distinfo index 8a487a30526..a69792c6dab 100644 --- a/www/ruby-actioncable52/distinfo +++ b/www/ruby-actioncable52/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.14 2022/06/07 14:48:12 taca Exp $ +$NetBSD: distinfo,v 1.15 2022/07/13 14:41:08 taca Exp $ -BLAKE2s (actioncable-5.2.8.gem) = 000cfab9461cc2e77fd9c416e5cc3e87e347926056ff3ef4c76ebc4ba8f6d711 -SHA512 (actioncable-5.2.8.gem) = e078a33524f5c4f914b3965c0e702e4125b19f1cf6282968e9e7e325a7cfcd9c5c7880256416d92b74ac8fdbb495cf95c9e81b2aee85f3c139870fe876af9365 -Size (actioncable-5.2.8.gem) = 41472 bytes +BLAKE2s (actioncable-5.2.8.1.gem) = 10df8b2c1d857a73b457211145725e666f9314273525f9cc38dfd370c61b520e +SHA512 (actioncable-5.2.8.1.gem) = c6048e36400aa68696f985a9a9cb359af2d25430d60dc1230ced0866bfd2ce249b80baf9979fe52ceae58f62662c987e40f7962a6f736a4bfc2f0f5594d1a0b0 +Size (actioncable-5.2.8.1.gem) = 41472 bytes diff --git a/www/ruby-actionpack52/distinfo b/www/ruby-actionpack52/distinfo index 0a5ef7e21d6..6107ca558f4 100644 --- a/www/ruby-actionpack52/distinfo +++ b/www/ruby-actionpack52/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.14 2022/06/07 14:48:12 taca Exp $ +$NetBSD: distinfo,v 1.15 2022/07/13 14:41:08 taca Exp $ -BLAKE2s (actionpack-5.2.8.gem) = ef053fede2c4f39a18d0a7d4f791270838ca4c84146ac77998f9715b0a120dba -SHA512 (actionpack-5.2.8.gem) = 25d5ee40f698bebfd9fdab70d27129f04c42571d4e09765e3d92c5e9986c740c2eeb7d4d937ec093417baa8a7f33ea4a130e047522f39d1e02f2c7c9fb32d41f -Size (actionpack-5.2.8.gem) = 214528 bytes +BLAKE2s (actionpack-5.2.8.1.gem) = 027393689d47bdfee362ff34fa6d46c7a48ab23c314282f75fe73e06a25386e9 +SHA512 (actionpack-5.2.8.1.gem) = cb16e2293630bae2448c7a8960d8911f11b09c9884223f21a906964278c748105eb39dbdcb3b2bd055fe1c9df0e7d65c0480cb74645f3b92276a68abd3ab6235 +Size (actionpack-5.2.8.1.gem) = 214528 bytes diff --git a/www/ruby-actionview52/distinfo b/www/ruby-actionview52/distinfo index c62e60aba96..2d0eba5c87d 100644 --- a/www/ruby-actionview52/distinfo +++ b/www/ruby-actionview52/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.14 2022/06/07 14:48:12 taca Exp $ +$NetBSD: distinfo,v 1.15 2022/07/13 14:41:08 taca Exp $ -BLAKE2s (actionview-5.2.8.gem) = d38dcb1e70a576b7a8866b5131b6feea3de7c304d03239238f83fc77656e4e3f -SHA512 (actionview-5.2.8.gem) = c69bd0039f265bdbfce73b912419c4a4ecc418038b180164810682f487d44f840309832a83d999a9b6965c98e17f45261323bd604640635b14df90165a063b40 -Size (actionview-5.2.8.gem) = 163840 bytes +BLAKE2s (actionview-5.2.8.1.gem) = 277db3a85706a9d6a0d247fec8f3c9b16d4af453ef39a337564b8fa2992f7ad6 +SHA512 (actionview-5.2.8.1.gem) = 2d9b7a9ac66812a16df065732ed340519a6eacd08dd28da6d4a1eafeea028749a9194d27261457402ffe3a5a6df68762d07339a88ce9b559b278165a3a62e098 +Size (actionview-5.2.8.1.gem) = 163840 bytes diff --git a/www/ruby-rails52/distinfo b/www/ruby-rails52/distinfo index 7eae231b7c6..d493fa12e33 100644 --- a/www/ruby-rails52/distinfo +++ b/www/ruby-rails52/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.14 2022/06/07 14:48:13 taca Exp $ +$NetBSD: distinfo,v 1.15 2022/07/13 14:41:09 taca Exp $ -BLAKE2s (rails-5.2.8.gem) = 478cef0c7cb0c022163db5ecbae2f9c87663ae20a639dfdb52aed92d3331c521 -SHA512 (rails-5.2.8.gem) = b8ac1afc31a13ec9736ef81dbdd3ad89c4c7337e766e3598ea0c467fb06b925dd29372bef7b6b8f7b26ca9a51c1e831621338753519075b3d03f4bf7c237fe82 -Size (rails-5.2.8.gem) = 6656 bytes +BLAKE2s (rails-5.2.8.1.gem) = a24b69fee72bfdca9a416e9e9c45368b043af45b0f73f9bd94b60c278f07eb9d +SHA512 (rails-5.2.8.1.gem) = 556ac7f136d963f029253664dc4d4eb417e5892d33bf11d59ede67f7120b83a72c00e2516670fcbcd86ee28c90f5fc75c89a44e1294510b81e527155d8690279 +Size (rails-5.2.8.1.gem) = 6656 bytes -- cgit v1.2.3