]> code.ossystems Code Review - openembedded-core.git/commit
ruby: 2.7.3 -> 2.7.4
authorMinjae Kim <flowergom@gmail.com>
Tue, 10 Aug 2021 01:36:54 +0000 (10:36 +0900)
committerSteve Sakoman <steve@sakoman.com>
Tue, 10 Aug 2021 14:02:54 +0000 (04:02 -1000)
commit9b1a0d63186a64d78de379494fe256087f62770a
tree29f2cc324ac6c569e08c5ea07fd9bbbf540d57de
parente8e06e4175c010a7dc0a4e3598b70b89d43f8475
ruby: 2.7.3 -> 2.7.4

This release includes security fixes.

CVE-2021-31810: Trusting FTP PASV responses vulnerability in Net::FTP
CVE-2021-32066: A StartTLS stripping vulnerability in Net::IMAP
CVE-2021-31799: A command injection vulnerability in RDoc

https://www.ruby-lang.org/en/news/2021/07/07/ruby-2-7-4-released/
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/ruby/ruby_2.7.4.bb [moved from meta/recipes-devtools/ruby/ruby_2.7.3.bb with 95% similarity]