]> code.ossystems Code Review - openembedded-core.git/commit
ruby: 2.7.1 -> 2.7.3
authorLee Chee Yang <chee.yang.lee@intel.com>
Wed, 9 Jun 2021 08:54:49 +0000 (16:54 +0800)
committerSteve Sakoman <steve@sakoman.com>
Wed, 9 Jun 2021 14:35:50 +0000 (04:35 -1000)
commit4de0d54827bc4645b69e5a0043b6f285b0193402
tree1fa15dfcf21740d23adb8adbb7f8444d18c4b0fa
parentd7e56f1910b7963d8b704107903ecf40e9472d3c
ruby: 2.7.1 -> 2.7.3

This release includes security fixes.

CVE-2021-28965: XML round-trip vulnerability in REXML
CVE-2021-28966: Path traversal in Tempfile on Windows

CVE-2020-25613 fixed in 2.7.2, do drop the patch

release notes for 2.7.2 and 2.7.3
https://www.ruby-lang.org/en/news/2020/10/02/ruby-2-7-2-released/
https://www.ruby-lang.org/en/news/2021/04/05/ruby-2-7-3-released/

Signed-off-by: Lee Chee Yang <chee.yang.lee@intel.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/ruby/ruby/CVE-2020-25613.patch [deleted file]
meta/recipes-devtools/ruby/ruby_2.7.3.bb [moved from meta/recipes-devtools/ruby/ruby_2.7.1.bb with 94% similarity]