From c463cfc0fbf9c0acbf7464eb70f421a9e3fc4ec2 Mon Sep 17 00:00:00 2001 From: Francois Perrad Date: Sat, 10 Dec 2022 10:54:35 +0100 Subject: [PATCH] package/ruby: security bump to version 3.1.3 fix CVE-2021-33621: HTTP response splitting in CGI see https://www.ruby-lang.org/en/news/2022/11/24/ruby-3-1-3-released/ Signed-off-by: Francois Perrad Signed-off-by: Thomas Petazzoni (cherry picked from commit 20f7ed86aa9f2a65af9b44a599f7d1b10075f158) Signed-off-by: Peter Korsgaard --- package/ruby/ruby.hash | 4 ++-- package/ruby/ruby.mk | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/package/ruby/ruby.hash b/package/ruby/ruby.hash index da6221ec50..42d8a2497f 100644 --- a/package/ruby/ruby.hash +++ b/package/ruby/ruby.hash @@ -1,5 +1,5 @@ -# https://www.ruby-lang.org/en/news/2022/04/12/ruby-3-1-2-released/ -sha512 4a74e9efc6ea4b3eff4fec7534eb1fff4794d021531defc2e9937e53c6668db8ecdc0fff2bc23d5e6602d0df344a2caa85b31c5414309541e3d5313ec82b6e21 ruby-3.1.2.tar.xz +# https://www.ruby-lang.org/en/news/2022/11/24/ruby-3-1-3-released/ +sha512 4b0fd334ae56132ba98b8a69adad54bdcf7f7aeabd5eba5b0f0399a3868e2054f9026ca1b1cb2dbb197a9e9b0610b263481949c0623a62071546bc5adff8ca69 ruby-3.1.3.tar.xz # License files, Locally calculated sha256 794c384f94396ab07e3e6f53a9f8be093facb7eb4193266024302b93b29e12dc LEGAL diff --git a/package/ruby/ruby.mk b/package/ruby/ruby.mk index cbdfa4b826..28b1ec13ef 100644 --- a/package/ruby/ruby.mk +++ b/package/ruby/ruby.mk @@ -5,7 +5,7 @@ ################################################################################ RUBY_VERSION_MAJOR = 3.1 -RUBY_VERSION = $(RUBY_VERSION_MAJOR).2 +RUBY_VERSION = $(RUBY_VERSION_MAJOR).3 RUBY_VERSION_EXT = 3.1.0 RUBY_SITE = http://cache.ruby-lang.org/pub/ruby/$(RUBY_VERSION_MAJOR) RUBY_SOURCE = ruby-$(RUBY_VERSION).tar.xz