Update to 1.9.3p448 23/8323/1 accepted/tizen/ivi/genivi accepted/tizen/ivi/stable accepted/tizen_3.0.2014.q3_common accepted/tizen_3.0.m14.3_ivi accepted/tizen_3.0_common accepted/tizen_3.0_ivi accepted/tizen_common accepted/tizen_generic accepted/tizen_ivi accepted/tizen_mobile accepted/tizen_tv accepted/tizen_wearable tizen tizen_3.0.2014.q3_common tizen_3.0.2014.q4_common tizen_3.0.2015.q1_common tizen_3.0.2015.q2_common tizen_3.0.m14.2_ivi tizen_3.0.m14.3_ivi tizen_3.0.m1_mobile tizen_3.0.m1_tv tizen_3.0.m2 tizen_3.0_ivi tizen_ivi_genivi accepted/tizen/20130912.190031 accepted/tizen/20130912.194208 accepted/tizen/20130913.024756 accepted/tizen/3.0/common/20161114.111735 accepted/tizen/ivi/20160218.025823 accepted/tizen/ivi/genivi/20140131.033231 ivi_oct_m2 submit/tizen/20130816.143303 submit/tizen/20130912.090646 submit/tizen_3.0_common/20161104.104000 submit/tizen_common/20151023.083358 submit/tizen_common/20151026.085049 submit/tizen_ivi/20160217.000000 submit/tizen_ivi/20160217.000007 submit/tizen_ivi_genivi/20140131.032445 submit/tizen_mobile/20141120.000000 tizen_3.0.2014.q3_common_release tizen_3.0.m14.2_ivi_release tizen_3.0.m14.3_ivi_release tizen_3.0.m1_mobile_release tizen_3.0.m1_tv_release tizen_3.0.m2.a1_mobile_release tizen_3.0.m2.a1_tv_release tizen_3.0_ivi_release
authorMichael Leibowitz <michael.leibowitz@intel.com>
Thu, 15 Aug 2013 23:30:32 +0000 (16:30 -0700)
committerMichael Leibowitz <michael.leibowitz@intel.com>
Thu, 15 Aug 2013 23:30:32 +0000 (16:30 -0700)
Ruby was vulnarable to 6 CVE's before this fix.

Fixes: CVE-2013-0256, CVE-2013-0256, CVE-2012-5371,
       CVE-2012-4466, CVE-2012-4464, CVE-2012-4522

Signed-off-by: Michael Leibowitz <michael.leibowitz@intel.com>
packaging/ruby.spec

index c84fce5..f10b9bf 100644 (file)
@@ -1,9 +1,9 @@
 Name:           ruby
-Version:        1.9.3.p194
+Version:        1.9.3.p448
 Release:        0
 #
 %define pkg_version 1.9.3
-%define patch_level p194
+%define patch_level p448
 # keep in sync with macro file!
 %define rb_binary_suffix 1.9
 %define rb_ver  1.9.1
@@ -35,7 +35,7 @@ Provides:       rubygem-rake = 0.9.2.2
 Provides:       ruby(abi) = %{rb_ver}
 #
 Url:            http://www.ruby-lang.org/
-Source:         ftp://ftp.ruby-lang.org/pub/ruby/1.9/ruby-%{pkg_version}-%{patch_level}.tar.bz2
+Source:         ftp://ftp.ruby-lang.org/pub/ruby/1.9/ruby-%{pkg_version}-%{patch_level}.tar.gz
 Source6:        ruby.macros
 Source7:        gem_install_wrapper.sh
 Source1001:    ruby.manifest