ruby-rack 1.5.2-3+deb8u1build0.15.04.1 source package in Ubuntu

Changelog

ruby-rack (1.5.2-3+deb8u1build0.15.04.1) vivid-security; urgency=medium

  * fake sync from Debian

ruby-rack (1.5.2-3+deb8u1) jessie-security; urgency=high

  * Create cherry-picked patch for Security Fix (Closes: #789311).
    - CVE-2015-3225: 0001-Fix-Params_Depth.patch
      Default depth at which the parameter parser will raise an exception
      for being too deep, allows remote attackers to cause a denial of
      service (SystemStackError) via a request with a large parameter
      depth.
  * Add 0002-Add-missing-require-to-response.rb.patch.
    Add missing require of rack/body_proxy in response.rb

 -- Tyler Hicks <email address hidden>  Fri, 07 Aug 2015 13:49:45 -0500

Upload details

Uploaded by:
Tyler Hicks
Uploaded to:
Vivid
Original maintainer:
Debian Ruby Extras Maintainers
Architectures:
all
Section:
ruby
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Vivid: [FULLYBUILT] amd64

Downloads

File Size SHA-256 Checksum
ruby-rack_1.5.2.orig.tar.gz 213.3 KiB fd4fbd6545f9105baf62b6ea413b62d4724567c608b14de0a3a64568f81cc774
ruby-rack_1.5.2-3+deb8u1build0.15.04.1.debian.tar.xz 7.1 KiB 39f53d682797bffc0d8e3d4034f08c95f47f2c491858fe8b1bfe2f8cee7fec6f
ruby-rack_1.5.2-3+deb8u1build0.15.04.1.dsc 2.2 KiB 2f9b3340dbd33b0a5dfd34512a70d555a0d960cdf6a484959be6f082fb18e213

View changes file

Binary packages built by this source

ruby-rack: No summary available for ruby-rack in ubuntu vivid.

No description available for ruby-rack in ubuntu vivid.