pkgsrc/textproc/ruby-nokogiri/distinfo
tsutsui 778182e3ad ruby-nokogiri: update to 1.13.3.
Upstream changes:
 https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.3
 https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.2

1.13.3 / 2022-02-21

Fixed

  * [CRuby] Revert a HTML4 parser bug in libxml 2.9.13 (introduced in Nokogiri
    v1.13.2). The bug causes libxml2's HTML4 parser to fail to recover when
    encountering a bare < character in some contexts. This version of Nokogiri
    restores the earlier behavior, which is to recover from the parse error and
    treat the < as normal character data (which will be serialized as &lt; in a
    text node). The bug (and the fix) is only relevant when the RECOVER parse
    option is set, as it is by default. [#2461]

1.13.2 / 2022-02-21

Security

  * [CRuby] Vendored libxml2 is updated from 2.9.12 to 2.9.13. This update
    addresses CVE-2022-23308.
  * [CRuby] Vendored libxslt is updated from 1.1.34 to 1.1.35. This update
    addresses CVE-2021-30560.

Please see GHSA-fq42-c5rg-92c2 for more information about these CVEs.

Dependencies

  * [CRuby] Vendored libxml2 is updated from 2.9.12 to 2.9.13. Full changelog
    is available at https://download.gnome.org/sources/libxml2/2.9/
    libxml2-2.9.13.news
  * [CRuby] Vendored libxslt is updated from 1.1.34 to 1.1.35. Full changelog
    is available at https://download.gnome.org/sources/libxslt/1.1/
    libxslt-1.1.35.news
2022-03-06 17:14:34 +00:00

5 lines
360 B
Text

$NetBSD: distinfo,v 1.49 2022/03/06 17:14:34 tsutsui Exp $
BLAKE2s (nokogiri-1.13.3.gem) = f25a3d80dca7df29d756472b28ad8b456ea0a3a35b8fe0adb72250fce59e5f97
SHA512 (nokogiri-1.13.3.gem) = d704ed5ea6af3e066e3ddefd74cb15d0feed359b90c3b75b83a8f1ff85d8d4ca5b22a47c6848a2043a84f217e9d6b5ca861125d60ed0f88cb53690eb3726b3e7
Size (nokogiri-1.13.3.gem) = 5492736 bytes