]> code.ossystems Code Review - openembedded-core.git/commit
ruby: 2.7.4 -> 2.7.5
authorChee Yang Lee <chee.yang.lee@intel.com>
Wed, 23 Feb 2022 06:17:30 +0000 (14:17 +0800)
committerSteve Sakoman <steve@sakoman.com>
Wed, 23 Feb 2022 15:00:41 +0000 (05:00 -1000)
commita7935c9c4a47098f0c1b2eefdf7773bd85891945
tree6cb6320bf39b811577225bfc6196a567ce85014e
parent68b59e37d25ead5aaf68d24c6a55b7d1864203fa
ruby: 2.7.4 -> 2.7.5

This release includes security fixes.
CVE-2021-41817: Regular Expression Denial of Service Vulnerability of Date Parsing Methods
CVE-2021-41816: Buffer Overrun in CGI.escape_html
CVE-2021-41819: Cookie Prefix Spoofing in CGI::Cookie.parse

Signed-off-by: Chee Yang Lee <chee.yang.lee@intel.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/ruby/ruby_2.7.5.bb [moved from meta/recipes-devtools/ruby/ruby_2.7.4.bb with 95% similarity]