summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Antonio Terceiro [Sun, 5 Dec 2021 23:55:44 +0000 (23:55 +0000)]
debian-changes
This patch file represents the entire difference between the package as shipped
by Debian and the official upstream sources. The goal is to maintain this file
as small as possible, avoiding non-upstreamed patches at all costs.
The Debian packaging is maintained in the following Git repository:
http://anonscm.debian.org/gitweb/?p=collab-maint/ruby.git
To obtain a view of the individual commits that affect non-Debian-specific
files, you can clone that repository, and from the master branch, run:
$ ./debian/upstream-changes
Gbp-Pq: Name debian-changes
Utkarsh Gupta [Sun, 5 Dec 2021 23:55:44 +0000 (23:55 +0000)]
ruby2.3 (2.3.3-1+deb9u11) stretch-security; urgency=high
* Add length limit option for methods that parses
date strings. (Fixes: CVE-2021-41817)
* When parsing cookies, only decode the values.
(Fixes: CVE-2021-41819)
[dgit import unpatched ruby2.3 2.3.3-1+deb9u11]
Utkarsh Gupta [Sun, 5 Dec 2021 23:55:44 +0000 (23:55 +0000)]
Import ruby2.3_2.3.3-1+deb9u11.debian.tar.xz
[dgit import tarball ruby2.3 2.3.3-1+deb9u11 ruby2.3_2.3.3-1+deb9u11.debian.tar.xz]
Christian Hofstaedtler [Tue, 22 Nov 2016 12:32:41 +0000 (12:32 +0000)]
Import ruby2.3_2.3.3.orig.tar.xz
[dgit import orig ruby2.3_2.3.3.orig.tar.xz]