fadaa64387
Quote from release announce: Good day to release a ruby, no? That's definitely one of the reason why I do this now, but there are others. One thing is to backport fixes for CVE-2013-1821, which was disclosed earlier. The other is to fix CVE-2013-4073, whose details are available soon I believe. People still using 1.8.7 should consider upgrading because the fixes are for security. ChangeLog. Thu Jun 27 20:55:23 2013 URABE Shyouhei <shyouhei@ruby-lang.org> * test/openssl/test_ssl.rb: Oops, sorry! Thu Jun 27 20:21:18 2013 URABE Shyouhei <shyouhei@ruby-lang.org> * ext/openssl/lib/openssl/ssl-internal.rb (OpenSSL::SSL#verify_certificate_identity): fix hostname verification. Patch by nahi. * test/openssl/test_ssl.rb (OpenSSL#test_verify_certificate_identity): test for above. Sat May 18 23:34:50 2013 Kouhei Sutou <kou@cozmixng.org> * lib/rexml/document.rb: move entity_expansion_text_limit accessor to ... * lib/rexml/rexml.rb: ... here to make rexml/text independent from REXML::Document. It causes circular require. * lib/rexml/document.rb (REXML::Document.entity_expansion_text_limit): deprecated. * lib/rexml/document.rb (REXML::Document.entity_expansion_text_limit=): deprecated. * lib/rexml/text.rb: add missing require "rexml/rexml" for REXML.entity_expansion_text_limit. Reported by Robert Ulejczyk. Thanks!!! [ruby-core:52895] [Bug #7961] Sat May 18 23:34:50 2013 Aaron Patterson <aaron@tenderlovemaking.com> * lib/rexml/document.rb (REXML::Document.entity_expansion_text_limit): new attribute to read/write entity expansion text limit. the default limit is 10Kb. * lib/rexml/text.rb (REXML::Text.unnormalize): check above attribute. |
||
---|---|---|
.. | ||
files | ||
patches | ||
ALTERNATIVES | ||
DEINSTALL | ||
DESCR | ||
distinfo | ||
hacks.mk | ||
INSTALL | ||
Makefile | ||
MESSAGE | ||
options.mk | ||
PLIST |