Thu Jan 19 14:22:03 2023 UTC ()
www/ruby-rack2: update to 2.2.6.2

2.2.6 (2022-01-17)

* Extend Rack::MethodOverride to handle QueryParser::ParamsTooDeepError
  error.  (#2011, @byroot)

2.2.6.1 (2022-01-17)

* [CVE-2022-44571] Fix ReDoS vulnerability in multipart parser
* [CVE-2022-44570] Fix ReDoS in Rack::Utils.get_byte_ranges
* [CVE-2022-44572] Forbid control characters in attributes (also ReDoS)

2.2.6.2 (2022-01-17)

* [CVE-2022-44570] Fix ReDoS in Rack::Utils.get_byte_ranges


(taca)
diff -r1.2 -r1.3 pkgsrc/www/ruby-rack2/Makefile
diff -r1.2 -r1.3 pkgsrc/www/ruby-rack2/distinfo

cvs diff -r1.2 -r1.3 pkgsrc/www/ruby-rack2/Makefile (expand / switch to unified diff)

--- pkgsrc/www/ruby-rack2/Makefile 2023/01/05 15:31:27 1.2
+++ pkgsrc/www/ruby-rack2/Makefile 2023/01/19 14:22:03 1.3
@@ -1,17 +1,17 @@ @@ -1,17 +1,17 @@
1# $NetBSD: Makefile,v 1.2 2023/01/05 15:31:27 taca Exp $ 1# $NetBSD: Makefile,v 1.3 2023/01/19 14:22:03 taca Exp $
2 2
3DISTNAME= rack-2.2.5 3DISTNAME= rack-2.2.6.2
4PKGNAME= ${RUBY_PKGPREFIX}-${DISTNAME:S/rack/rack2/} 4PKGNAME= ${RUBY_PKGPREFIX}-${DISTNAME:S/rack/&2/}
5CATEGORIES= www 5CATEGORIES= www
6 6
7MAINTAINER= pkgsrc-users@NetBSD.org 7MAINTAINER= pkgsrc-users@NetBSD.org
8HOMEPAGE= https://rack.github.io/ 8HOMEPAGE= https://rack.github.io/
9COMMENT= Modular Ruby webserver interface 9COMMENT= Modular Ruby webserver interface
10LICENSE= mit 10LICENSE= mit
11 11
12USE_LANGUAGES= # none 12USE_LANGUAGES= # none
13 13
14OVERRIDE_GEMSPEC= :executables rackup=rackup2 \ 14OVERRIDE_GEMSPEC= :executables rackup=rackup2 \
15 :files bin/rackup=bin/rackup2 15 :files bin/rackup=bin/rackup2
16RUBYGEM_OPTIONS+= --format-executable 16RUBYGEM_OPTIONS+= --format-executable
17 17

cvs diff -r1.2 -r1.3 pkgsrc/www/ruby-rack2/distinfo (expand / switch to unified diff)

--- pkgsrc/www/ruby-rack2/distinfo 2023/01/05 15:31:27 1.2
+++ pkgsrc/www/ruby-rack2/distinfo 2023/01/19 14:22:03 1.3
@@ -1,5 +1,5 @@ @@ -1,5 +1,5 @@
1$NetBSD: distinfo,v 1.2 2023/01/05 15:31:27 taca Exp $ 1$NetBSD: distinfo,v 1.3 2023/01/19 14:22:03 taca Exp $
2 2
3BLAKE2s (rack-2.2.5.gem) = 3cf7ffd3cb2b71f11e8f8ebbfcfa3da1126693ef5f823334e6a7940b7f408f7b 3BLAKE2s (rack-2.2.6.2.gem) = ed58f4ac69174fac674f76468a367a7bd4d03c238c28fc316db41f1fb635b18a
4SHA512 (rack-2.2.5.gem) = 0e34c8daecd453264fe794c4c16978e8b5b522f41cd134171c79c042ff79d4da59203f69aa5dd62039ef1a62822c069ace4153a82215fed9e4ad8999a8f1d634 4SHA512 (rack-2.2.6.2.gem) = d5c0622567f221a3fd38647c1f3801f673bf2f76213d84f1919d8eea72214c4e10e3bcb5ec643e48629e0af6bc9f3f6bb4439a8d9bc4fe4bc4e6795a1211160f
5Size (rack-2.2.5.gem) = 151552 bytes 5Size (rack-2.2.6.2.gem) = 151552 bytes