CVSROOT:        /cvs
Module name:    ports
Changes by:     jer...@cvs.openbsd.org  2019/03/15 10:44:50

Modified files:
        lang/ruby/2.6  : Makefile distinfo 
        lang/ruby/2.6/pkg: PLIST-main PLIST-ri_docs 

Log message:
Update to ruby 2.6.2

Fixes the following vulnerabilities in rubygems:

CVE-2019-8320: Delete directory using symlink when decompressing tar
CVE-2019-8321: Escape sequence injection vulnerability in verbose
CVE-2019-8322: Escape sequence injection vulnerability in gem owner
CVE-2019-8323: Escape sequence injection vulnerability in API response handling
CVE-2019-8324: Installing a malicious gem may lead to arbitrary code execution
CVE-2019-8325: Escape sequence injection vulnerability in errors

Reply via email to