Received: by mail.netbsd.org (Postfix, from userid 605) id 7C93084D80; Mon, 8 Jun 2020 18:50:05 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 0790C84CE9 for ; Mon, 8 Jun 2020 17:52:42 +0000 (UTC) X-Virus-Scanned: amavisd-new at netbsd.org Received: from mail.netbsd.org ([127.0.0.1]) by localhost (mail.netbsd.org [127.0.0.1]) (amavisd-new, port 10025) with ESMTP id oDe9HlMH5nt4 for ; Mon, 8 Jun 2020 17:52:41 +0000 (UTC) Received: from cvs.NetBSD.org (ivanova.NetBSD.org [IPv6:2001:470:a085:999:28c:faff:fe03:5984]) by mail.netbsd.org (Postfix) with ESMTP id 7E77584C6C for ; Mon, 8 Jun 2020 17:52:41 +0000 (UTC) Received: by cvs.NetBSD.org (Postfix, from userid 500) id 71A87FB27; Mon, 8 Jun 2020 17:52:41 +0000 (UTC) Content-Transfer-Encoding: 7bit Content-Type: multipart/mixed; boundary="_----------=_1591638761179650" MIME-Version: 1.0 Date: Mon, 8 Jun 2020 17:52:41 +0000 From: "Benny Siegert" Subject: CVS commit: [pkgsrc-2020Q1] pkgsrc/www/ruby-puma To: pkgsrc-changes@NetBSD.org Reply-To: bsiegert@netbsd.org X-Mailer: log_accum Message-Id: <20200608175241.71A87FB27@cvs.NetBSD.org> Sender: pkgsrc-changes-owner@NetBSD.org List-Id: pkgsrc-changes.NetBSD.org Precedence: bulk List-Unsubscribe: This is a multi-part message in MIME format. --_----------=_1591638761179650 Content-Disposition: inline Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset="US-ASCII" Module Name: pkgsrc Committed By: bsiegert Date: Mon Jun 8 17:52:41 UTC 2020 Modified Files: pkgsrc/www/ruby-puma [pkgsrc-2020Q1]: Makefile distinfo Log Message: Pullup ticket #6223 - requested by taca www/ruby-puma: security fix Revisions pulled up: - www/ruby-puma/Makefile 1.23 - www/ruby-puma/distinfo 1.18 --- Module Name: pkgsrc Committed By: taca Date: Sun May 24 13:47:49 UTC 2020 Modified Files: pkgsrc/www/ruby-puma: Makefile distinfo Log Message: www/ruby-puma: update to 4.3.5 Update ruby-puma to 4.3.5. 4.3.4/4.3.5 and 3.12.5/3.12.6 / 2020-05-22 Each patchlevel release contains a separate security fix. We recommend simply upgrading to 4.3.5/3.12.6. * Security Fix: Fixed two separate HTTP smuggling vulnerabilities that used the Transfer-Encoding header. CVE-2020-11076 and CVE-2020-11077. To generate a diff of this commit: cvs rdiff -u -r1.22 -r1.22.2.1 pkgsrc/www/ruby-puma/Makefile cvs rdiff -u -r1.17 -r1.17.2.1 pkgsrc/www/ruby-puma/distinfo Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files. --_----------=_1591638761179650 Content-Disposition: inline Content-Length: 1535 Content-Transfer-Encoding: binary Content-Type: text/x-diff; charset=us-ascii Modified files: Index: pkgsrc/www/ruby-puma/Makefile diff -u pkgsrc/www/ruby-puma/Makefile:1.22 pkgsrc/www/ruby-puma/Makefile:1.22.2.1 --- pkgsrc/www/ruby-puma/Makefile:1.22 Sun Mar 1 02:52:25 2020 +++ pkgsrc/www/ruby-puma/Makefile Mon Jun 8 17:52:41 2020 @@ -1,6 +1,6 @@ -# $NetBSD: Makefile,v 1.22 2020/03/01 02:52:25 taca Exp $ +# $NetBSD: Makefile,v 1.22.2.1 2020/06/08 17:52:41 bsiegert Exp $ -DISTNAME= puma-4.3.3 +DISTNAME= puma-4.3.5 CATEGORIES= www MAINTAINER= taca@NetBSD.org Index: pkgsrc/www/ruby-puma/distinfo diff -u pkgsrc/www/ruby-puma/distinfo:1.17 pkgsrc/www/ruby-puma/distinfo:1.17.2.1 --- pkgsrc/www/ruby-puma/distinfo:1.17 Sun Mar 1 02:52:25 2020 +++ pkgsrc/www/ruby-puma/distinfo Mon Jun 8 17:52:41 2020 @@ -1,6 +1,6 @@ -$NetBSD: distinfo,v 1.17 2020/03/01 02:52:25 taca Exp $ +$NetBSD: distinfo,v 1.17.2.1 2020/06/08 17:52:41 bsiegert Exp $ -SHA1 (puma-4.3.3.gem) = fe73c9cffc842eb7fe07ea1ec01dad9ddc40976f -RMD160 (puma-4.3.3.gem) = 4777976662b29a3e9a34fb4fbca8d950d24a4a88 -SHA512 (puma-4.3.3.gem) = 12d6cfd483f6c10f61ab1480e15ad32bbb878f451a9cf1b5e07f54b41608ff265f5963c018c6b73b247dd58fda4c2f47bba1975e8e61df37cb788280fbb4ed0e -Size (puma-4.3.3.gem) = 174592 bytes +SHA1 (puma-4.3.5.gem) = d7652ab00d3791508b17f51a9f88a72b6584aeb8 +RMD160 (puma-4.3.5.gem) = 80c23f63ae471d6914178a520630c3fefe72624c +SHA512 (puma-4.3.5.gem) = 7271d2c6d12094fdc9c17ae93f14f6c83e6e007f46359940e40e37b712b5e8deb9646640333a5e0cfe92ccc8d5fb85b490d4a5899489031ea3caccca55a3ae94 +Size (puma-4.3.5.gem) = 175104 bytes --_----------=_1591638761179650--