emacs-bug-tracker
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

bug#59585: closed ([PATCH] gnu: ruby-3.0: Update to 3.1.3. [security fix


From: GNU bug Tracking System
Subject: bug#59585: closed ([PATCH] gnu: ruby-3.0: Update to 3.1.3. [security fixes].)
Date: Tue, 06 Dec 2022 11:36:01 +0000

Your message dated Tue, 06 Dec 2022 11:35:25 +0000
with message-id <87sfhslq7c.fsf@cbaines.net>
and subject line Re: [bug#59585] [PATCH v2] gnu: ruby-3.1: Update to 3.1.3. 
[security fixes].
has caused the debbugs.gnu.org bug report #59585,
regarding [PATCH] gnu: ruby-3.0: Update to 3.1.3. [security fixes].
to be marked as done.

(If you believe you have received this mail in error, please contact
help-debbugs@gnu.org.)


-- 
59585: https://debbugs.gnu.org/cgi/bugreport.cgi?bug=59585
GNU Bug Tracking System
Contact help-debbugs@gnu.org with problems
--- Begin Message --- Subject: [PATCH] gnu: ruby-3.0: Update to 3.1.3. [security fixes]. Date: Fri, 25 Nov 2022 20:40:52 +0100
Fixes: CVE-2021-33621: HTTP response splitting in CGI.

* gnu/packages/ruby.scm (ruby-3.1): Update to 3.1.3.
---
 gnu/packages/ruby.scm | 4 ++--
 1 file changed, 2 insertions(+), 2 deletions(-)

diff --git a/gnu/packages/ruby.scm b/gnu/packages/ruby.scm
index b53aa02ef3..375b09fd72 100644
--- a/gnu/packages/ruby.scm
+++ b/gnu/packages/ruby.scm
@@ -225,7 +225,7 @@ (define-public ruby-3.0
 (define-public ruby-3.1
   (package
     (inherit ruby-3.0)
-    (version "3.1.2")
+    (version "3.1.3")
     (source
      (origin
        (method url-fetch)
@@ -234,7 +234,7 @@ (define-public ruby-3.1
                            "/ruby-" version ".tar.xz"))
        (sha256
         (base32
-         "0amzqczgvr51ilcqfgw0n41hrfanzi0wh8k6am3x5dm1z0bx046a"))))))
+         "06ipqz45qcs0y1273gk2gwslxwd7jgighz3mzbddzg16k29n3qaf"))))))
 
 (define-public ruby ruby-2.7)
 
-- 
2.38.1




--- End Message ---
--- Begin Message --- Subject: Re: [bug#59585] [PATCH v2] gnu: ruby-3.1: Update to 3.1.3. [security fixes]. Date: Tue, 06 Dec 2022 11:35:25 +0000 User-agent: mu4e 1.8.11; emacs 28.2
Remco van 't Veer <remco@remworks.net> writes:

> Fixes: CVE-2021-33621: HTTP response splitting in CGI.
>
> * gnu/packages/ruby.scm (ruby-3.1): Update to 3.1.3.
> ---
>
> Oeps, sorry.  Copy paste error in commit message.
>
>  gnu/packages/ruby.scm | 4 ++--
>  1 file changed, 2 insertions(+), 2 deletions(-)

Awesome, I've pushed this to master as
b573af1165081fa8be6afa15a5f54e148125c8f2.

Thanks,

Chris

Attachment: signature.asc
Description: PGP signature


--- End Message ---

reply via email to

[Prev in Thread] Current Thread [Next in Thread]