Page MenuHomeSolus

Ruby update to 3.2.2
ClosedPublic

Authored by mazirah on Jun 1 2023, 9:38 AM.
Tags
  • Restricted Project
Referenced Files
F11006882: D14157.diff
Tue, Aug 1, 5:29 PM
F10960410: D14157.diff
Tue, Jul 18, 11:17 AM
F10913128: D14157.diff
Jul 7 2023, 8:45 PM
F10866703: D14157.id34560.diff
Jun 17 2023, 4:51 PM
F10866702: D14157.id34538.diff
Jun 17 2023, 4:51 PM
F10866700: D14157.id34513.diff
Jun 17 2023, 4:51 PM
F10866699: D14157.id.diff
Jun 17 2023, 4:50 PM
F10862183: D14157.diff
Jun 16 2023, 7:30 PM
Subscribers

Details

Summary

Full changelog here

Security Fixes:

  • CVE-2023-28755: ReDoS vulnerability in URI
  • CVE-2023-28756: ReDoS vulnerability in Time
Test Plan
  • Installed package
  • Installed IRB via 'gem install irb'
  • Tested some simple code in IRB

Diff Detail

Repository
R2832 ruby
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

algent added a project: Restricted Project.Jun 1 2023, 11:59 AM
algent requested changes to this revision.Jun 1 2023, 3:55 PM
algent added a subscriber: algent.

This is not that simple to update only ruby. In fact all packages that are using it, should be rebuilt against new version of ruby.

ruby-ffi
ruby-manpages
ruby-optimist
ruby-paint
ruby-rb-fsevent
ruby-thor
asciidoctor
ruby-rb-inotify
lolcat
ruby-listen
fontcustom
git-lfs
klayout
libopenshot
libwebkit-gtk
libwebkit-gtk41
libwebkit-gtk5
mkvtoolnix
nginx-unit
notmuch
ocl-icd
qt5-webkit
vim
weechat
This revision now requires changes to proceed.Jun 1 2023, 3:55 PM

Rebuilds done.

package.yml
13

Please move this after pkgconfig(libxcrypt)

This revision is now accepted and ready to land.Jun 5 2023, 6:16 PM
This revision was automatically updated to reflect the committed changes.