summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Salvatore Bonaccorso [Sun, 15 Dec 2019 16:28:25 +0000 (16:28 +0000)]
ruby2.3 (2.3.3-1+deb9u7) stretch-security; urgency=high
* Non-maintainer upload by the Security Team.
* Fix for wrong fnmatch patttern (CVE-2019-15845)
* Loop with String#scan without creating substring (CVE-2019-16201)
* WEBrick: prevent response splitting and header injection (CVE-2019-16254)
* lib/shell/command-processor.rb (Shell#[]): prevent unknown command
(CVE-2019-16255)
[dgit import unpatched ruby2.3 2.3.3-1+deb9u7]
Salvatore Bonaccorso [Sun, 15 Dec 2019 16:28:25 +0000 (16:28 +0000)]
Import ruby2.3_2.3.3-1+deb9u7.debian.tar.xz
[dgit import tarball ruby2.3 2.3.3-1+deb9u7 ruby2.3_2.3.3-1+deb9u7.debian.tar.xz]
Christian Hofstaedtler [Tue, 22 Nov 2016 12:32:41 +0000 (12:32 +0000)]
Import ruby2.3_2.3.3.orig.tar.xz
[dgit import orig ruby2.3_2.3.3.orig.tar.xz]