Received: from mail.netbsd.org (mail.netbsd.org [149.20.53.66]) by www.NetBSD.org (Postfix) with ESMTP id 341FB63E933 for ; Fri, 18 Jan 2013 15:08:50 +0000 (UTC) Received: by mail.netbsd.org (Postfix, from userid 605) id D98FE14A2FA; Fri, 18 Jan 2013 15:08:49 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 2094614A289 for ; Fri, 18 Jan 2013 15:08:42 +0000 (UTC) X-Virus-Scanned: amavisd-new at NetBSD.org Received: from mail.netbsd.org ([127.0.0.1]) by localhost (mail.NetBSD.org [127.0.0.1]) (amavisd-new, port 10025) with ESMTP id yaTpi4FHBEds for ; Fri, 18 Jan 2013 15:08:40 +0000 (UTC) Received: from cvs.netbsd.org (cvs.NetBSD.org [IPv6:2001:4f8:3:7:2e0:81ff:fe30:95bd]) by mail.netbsd.org (Postfix) with ESMTP id 0A51614A2E9 for ; Fri, 18 Jan 2013 15:08:39 +0000 (UTC) Received: by cvs.netbsd.org (Postfix, from userid 500) id 9D5C9175DD; Fri, 18 Jan 2013 15:08:39 +0000 (UTC) Content-Disposition: inline Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset="US-ASCII" MIME-Version: 1.0 Date: Fri, 18 Jan 2013 15:08:39 +0000 From: "Matthias Scheler" Subject: CVS commit: [pkgsrc-2012Q4] pkgsrc To: pkgsrc-changes@NetBSD.org Reply-To: tron@netbsd.org X-Mailer: log_accum Message-Id: <20130118150839.9D5C9175DD@cvs.netbsd.org> Sender: pkgsrc-changes-owner@NetBSD.org List-Id: pkgsrc-changes.NetBSD.org Precedence: bulk Module Name: pkgsrc Committed By: tron Date: Fri Jan 18 15:08:39 UTC 2013 Modified Files: pkgsrc/databases/ruby-activerecord31 [pkgsrc-2012Q4]: distinfo pkgsrc/devel/ruby-activemodel31 [pkgsrc-2012Q4]: distinfo pkgsrc/devel/ruby-activesupport31 [pkgsrc-2012Q4]: distinfo pkgsrc/devel/ruby-railties31 [pkgsrc-2012Q4]: distinfo pkgsrc/lang/ruby [pkgsrc-2012Q4]: rails.mk pkgsrc/mail/ruby-actionmailer31 [pkgsrc-2012Q4]: distinfo pkgsrc/www/ruby-actionpack31 [pkgsrc-2012Q4]: distinfo pkgsrc/www/ruby-activeresource31 [pkgsrc-2012Q4]: distinfo pkgsrc/www/ruby-rails31 [pkgsrc-2012Q4]: distinfo Log Message: Pullup ticket #4024 - requested by taca databases/ruby-activerecord31: security update devel/ruby-activemodel31: security update devel/ruby-activesupport31: security update devel/ruby-railties31: security update mail/ruby-actionmailer31: security update www/ruby-actionpack31: security update www/ruby-activeresource31: security update www/ruby-rails31: security update Revisions pulled up: - databases/ruby-activerecord31/distinfo 1.8 - devel/ruby-activemodel31/distinfo 1.8 - devel/ruby-activesupport31/distinfo 1.9 - devel/ruby-railties31/distinfo 1.8 - lang/ruby/rails.mk 1.36 - mail/ruby-actionmailer31/distinfo 1.8 - www/ruby-actionpack31/distinfo 1.9 - www/ruby-activeresource31/distinfo 1.8 - www/ruby-rails31/distinfo 1.8 --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:33:28 UTC 2013 Modified Files: pkgsrc/lang/ruby: rails.mk Log Message: Start update of Ruby on Rails 3.1.10. --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:34:08 UTC 2013 Modified Files: pkgsrc/devel/ruby-activesupport31: distinfo Log Message: Update ruby-activesupport31 to 3.1.10. ## Rails 3.1.10 (Jan 8, 2012) ## * Hash.from_xml raises when it encounters type="symbol" or type="yaml". Use Hash.from_trusted_xml to parse this XML. CVE-2013-0156 *Jeremy Kemper* --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:34:55 UTC 2013 Modified Files: pkgsrc/devel/ruby-activemodel31: distinfo Log Message: Update ruby-activemodel31 to 3.1.10. Only version has updated. --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:35:24 UTC 2013 Modified Files: pkgsrc/www/ruby-activeresource31: distinfo Log Message: Update ruby-activeresource31 to 3.1.10. Only version has updated. --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:36:36 UTC 2013 Modified Files: pkgsrc/databases/ruby-activerecord31: distinfo Log Message: Update ruby-activerecord31 to 3.1.10. ## Rails 3.1.10 * Fix querying with an empty hash *Damien Mathieu* [CVE-2013-0155] --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:37:05 UTC 2013 Modified Files: pkgsrc/www/ruby-actionpack31: distinfo Log Message: Update ruby-actionpack31 to 3.1.10. ## Rails 3.1.10 * Strip nils from collections on JSON and XML posts. [CVE-2013-0155] --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:37:52 UTC 2013 Modified Files: pkgsrc/mail/ruby-actionmailer31: distinfo Log Message: Update ruby-actionpack31 to 3.1.10. Only version has updated. --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:38:11 UTC 2013 Modified Files: pkgsrc/devel/ruby-railties31: distinfo Log Message: Update ruby-railties31 to 3.1.10. Only version has updated. --- Module Name: pkgsrc Committed By: taca Date: Wed Jan 9 12:38:29 UTC 2013 Modified Files: pkgsrc/www/ruby-rails31: distinfo Log Message: Update ruby-rails31 to 3.1.10. Only version has updated. To generate a diff of this commit: cvs rdiff -u -r1.6.4.1 -r1.6.4.2 \ pkgsrc/databases/ruby-activerecord31/distinfo cvs rdiff -u -r1.6.4.1 -r1.6.4.2 pkgsrc/devel/ruby-activemodel31/distinfo cvs rdiff -u -r1.7.4.1 -r1.7.4.2 pkgsrc/devel/ruby-activesupport31/distinfo cvs rdiff -u -r1.6.4.1 -r1.6.4.2 pkgsrc/devel/ruby-railties31/distinfo cvs rdiff -u -r1.31.2.4 -r1.31.2.5 pkgsrc/lang/ruby/rails.mk cvs rdiff -u -r1.6.4.1 -r1.6.4.2 pkgsrc/mail/ruby-actionmailer31/distinfo cvs rdiff -u -r1.7.4.1 -r1.7.4.2 pkgsrc/www/ruby-actionpack31/distinfo cvs rdiff -u -r1.6.4.1 -r1.6.4.2 pkgsrc/www/ruby-activeresource31/distinfo cvs rdiff -u -r1.6.4.1 -r1.6.4.2 pkgsrc/www/ruby-rails31/distinfo Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files.