ruby2.3.git
7 years agoruby2.3 (2.3.3-1+deb9u4) stretch-security; urgency=high
Salvatore Bonaccorso [Sun, 28 Oct 2018 20:49:57 +0000 (20:49 +0000)]
ruby2.3 (2.3.3-1+deb9u4) stretch-security; urgency=high

  * Non-maintainer upload by the Security Team.
  * OpenSSL::X509::Name equality check does not work correctly
    (CVE-2018-16395)
  * pack.c: avoid returning uninitialized String
  * Tainted flags are not propagated in Array#pack and String#unpack with some
    directives (CVE-2018-16396)

[dgit import unpatched ruby2.3 2.3.3-1+deb9u4]

7 years agoImport ruby2.3_2.3.3-1+deb9u4.debian.tar.xz
Salvatore Bonaccorso [Sun, 28 Oct 2018 20:49:57 +0000 (20:49 +0000)]
Import ruby2.3_2.3.3-1+deb9u4.debian.tar.xz

[dgit import tarball ruby2.3 2.3.3-1+deb9u4 ruby2.3_2.3.3-1+deb9u4.debian.tar.xz]

9 years agoImport ruby2.3_2.3.3.orig.tar.xz
Christian Hofstaedtler [Tue, 22 Nov 2016 12:32:41 +0000 (12:32 +0000)]
Import ruby2.3_2.3.3.orig.tar.xz

[dgit import orig ruby2.3_2.3.3.orig.tar.xz]