[PATCH] gnu: ruby-3.0: Update to 3.0.5. [security fixes].

  • Done
  • quality assurance status badge
Details
2 participants
  • Efraim Flashner
  • Remco van 't Veer
Owner
unassigned
Submitted by
Remco van 't Veer
Severity
normal
R
R
Remco van 't Veer wrote on 25 Nov 2022 20:32
(address . guix-patches@gnu.org)(name . Remco van 't Veer)(address . remco@remworks.net)
20221125193211.26730-1-remco@remworks.net
Fixes: CVE-2021-33621: HTTP response splitting in CGI.

* gnu/packages/ruby.scm (ruby-3.0): Update to 3.0.5.
---
gnu/packages/ruby.scm | 4 ++--
1 file changed, 2 insertions(+), 2 deletions(-)

Toggle diff (24 lines)
diff --git a/gnu/packages/ruby.scm b/gnu/packages/ruby.scm
index b53aa02ef3..780960c4fb 100644
--- a/gnu/packages/ruby.scm
+++ b/gnu/packages/ruby.scm
@@ -208,7 +208,7 @@ (define ruby-2.7-fixed
(define-public ruby-3.0
(package
(inherit ruby-2.7)
- (version "3.0.4")
+ (version "3.0.5")
(source
(origin
(method url-fetch)
@@ -217,7 +217,7 @@ (define-public ruby-3.0
"/ruby-" version ".tar.xz"))
(sha256
(base32
- "1w7jpq3flnm007z5kj8kixgm8l4smb80w8ak4993a12j0irzq8lf"))))
+ "1pnxbdkkh2miq9nqfq2qscvh76nprzg0r620d9ckdzih42xbaz6g"))))
(inputs
(modify-inputs (package-inputs ruby-2.7)
(replace "openssl" openssl)))))
--
2.38.1
E
E
Efraim Flashner wrote on 27 Nov 2022 12:02
(name . Remco van 't Veer)(address . remco@remworks.net)(address . 59583-done@debbugs.gnu.org)
Y4ND0yi9ZTZ/zOqi@3900XT
Thanks. Patch pushed!

--
Efraim Flashner <efraim@flashner.co.il> ????? ?????
GPG key = A28B F40C 3E55 1372 662D 14F7 41AA E7DC CA3D 8351
Confidentiality cannot be guaranteed on emails sent or received unencrypted
-----BEGIN PGP SIGNATURE-----
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=NF6U
-----END PGP SIGNATURE-----


Closed
?