summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Salvatore Bonaccorso [Sun, 28 Oct 2018 20:49:57 +0000 (20:49 +0000)]
ruby2.3 (2.3.3-1+deb9u4) stretch-security; urgency=high
* Non-maintainer upload by the Security Team.
* OpenSSL::X509::Name equality check does not work correctly
(CVE-2018-16395)
* pack.c: avoid returning uninitialized String
* Tainted flags are not propagated in Array#pack and String#unpack with some
directives (CVE-2018-16396)
[dgit import unpatched ruby2.3 2.3.3-1+deb9u4]
Salvatore Bonaccorso [Sun, 28 Oct 2018 20:49:57 +0000 (20:49 +0000)]
Import ruby2.3_2.3.3-1+deb9u4.debian.tar.xz
[dgit import tarball ruby2.3 2.3.3-1+deb9u4 ruby2.3_2.3.3-1+deb9u4.debian.tar.xz]
Christian Hofstaedtler [Tue, 22 Nov 2016 12:32:41 +0000 (12:32 +0000)]
Import ruby2.3_2.3.3.orig.tar.xz
[dgit import orig ruby2.3_2.3.3.orig.tar.xz]