Sync rails 2.3.11-0.1 (universe) from Debian unstable (main)

Bug #822922 reported by Felix Geyer
18
This bug affects 2 people
Affects Status Importance Assigned to Milestone
rails (Ubuntu)
Fix Released
Wishlist
Unassigned

Bug Description

Please sync rails 2.3.11-0.1 (universe) from Debian unstable (main)

Explanation of the Ubuntu delta and why it can be dropped:
cdata-and-white-space-handling.patch can be dropped as the issue has been (differently) fixed upstream:
https://github.com/rails/rails/commit/12f6fd0f2687f083bc23ad63fdc82c7e65cb8984

Changelog entries since current oneiric version 2.3.5-1.2ubuntu1:

rails (2.3.11-0.1) unstable; urgency=medium

  * Non-maintainer upload.
  * Imported Upstream version 2.3.11 (Closes: #616456)
    + Works with rubygems 1.6.x (Closes: #622829, #618221)
    + Fix XSS Risk in mail_to :encode=>:javascript [CVE-2011-0446]
    + Fix CSRF Bypass Risk: [CVE-2011-0447] (Closes: #614864)
    + I18N interpolation deprecation was removed in v2.3.6 (Closes: #546037)
  * Update dependencies on tmail (>= 1.2.7) and i18n (>= 0.4.1)
  * Adapt patches to the new release
  * Add Breaks: redmine (<< 1.1.3-1)
  * Add rubygems{1.8,1.9.1} dependency to all packages (Closes: #587767)

 -- Ondřej Surý <email address hidden> Mon, 30 May 2011 14:58:12 +0200

Felix Geyer (debfx)
Changed in rails (Ubuntu):
importance: Undecided → Wishlist
status: New → Confirmed
Revision history for this message
Colin Watson (cjwatson) wrote :

2011-08-11 00:26:32 INFO - <rails_2.3.11-0.1.dsc: downloading from http://ftp.debian.org/debian/>
[Updating] rails (2.3.5-1.2ubuntu1 [Ubuntu] < 2.3.11-0.1 [Debian])
 * Trying to add rails...
2011-08-11 00:26:32 INFO - <rails_2.3.11.orig.tar.gz: downloading from http://ftp.debian.org/debian/>
2011-08-11 00:26:34 INFO - <rails_2.3.11-0.1.debian.tar.gz: downloading from http://ftp.debian.org/debian/>
I: rails [universe] -> rails_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> rails-ruby1.8_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> rails-doc_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactiverecord-ruby_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactiverecord-ruby1.8_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactiverecord-ruby1.9.1_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactivesupport-ruby_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactivesupport-ruby1.8_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactivesupport-ruby1.9.1_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactionpack-ruby_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactionpack-ruby1.8_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactionmailer-ruby_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactionmailer-ruby1.8_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactiveresource-ruby_2.3.5-1.2ubuntu1 [universe].
I: rails [universe] -> libactiveresource-ruby1.8_2.3.5-1.2ubuntu1 [universe].

Changed in rails (Ubuntu):
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.