Revisions of rubygem-actionpack-3_2

Thomas Boerger's avatar Thomas Boerger (tboerger) committed (revision 33)
Stephan Kulow's avatar Stephan Kulow (coolo) committed (revision 32)
Stephan Kulow's avatar Stephan Kulow (coolo) committed (revision 31)
- updated to version 3.2.21
 *   Fix regression when using `ActionView::Helpers::TranslationHelper#translate` with
     `options[:raise]`.
 
     This regression was introduced at ec16ba75a5493b9da972eea08bae630eba35b62f.
 
     *Shota Fukumori (sora_h)*
 
 
 ## Rails 3.2.18 (May 6, 2014) ##
 
 *   Only accept actions without File::SEPARATOR in the name.
 
     This will avoid directory traversal in implicit render.
 
     Fixes: CVE-2014-0130
 
- obsolete CVE-2014-0130.patch
Jordi Massaguer's avatar Jordi Massaguer (jordimassaguerpla) committed (revision 30)
update to new packaging scheme
buildservice-autocommit accepted request 235685 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 29)
baserev update by copy to link target
Jordi Massaguer's avatar Jordi Massaguer (jordimassaguerpla) committed (revision 28)
- fix CVE-2014-0130: rubygem-actionpack: directory traversal issue
  (bnc#876714)
  CVE-2014-0130.patch: contains the fix
buildservice-autocommit accepted request 230058 from Stephan Kulow's avatar Stephan Kulow (coolo) (revision 27)
baserev update by copy to link target
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 229980 from Jordi Massaguer's avatar Jordi Massaguer (jordimassaguerpla) (revision 26)
- update to version 3.2.17. It includes among other things fixes for:
    CVE-2013-4389 (bnc#846239)
    CVE-2013-4491 (bnc#853625)
    CVE-2013-6414 (bnc#853633)
    CVE-2013-6415 (bnc#853632)
    CVE-2013-6417 (bnc#853627)
    CVE-2014-0081 (bnc#864433)
    CVE-2014-0082 (bnc#864431)
buildservice-autocommit accepted request 159883 from Stephan Kulow's avatar Stephan Kulow (coolo) (revision 25)
baserev update by copy to link target
Stephan Kulow's avatar Stephan Kulow (coolo) committed (revision 24)
- updated to version 3.2.13
 *   Fix incorrectly appended square brackets to a multiple select box
     if an explicit name has been given and it already ends with "[]".
 *   Determine the controller#action from only the matched path when using the
     shorthand syntax. Previously the complete path was used, which led
     to problems with nesting (scopes and namespaces).
     Fixes #7554.
 *   Fix `assert_template` with `render :stream => true`.
     Fix #1743.
 *   Eagerly populate the http method loookup cache so local project inflections do
     not interfere with use of underscore method ( and we don't need locks )
 *   `BestStandardsSupport` no longer duplicates `X-UA-Compatible` values on
     each request to prevent header size from blowing up.
 *   Fixed JSON params parsing regression for non-object JSON content.
 *   Prevent unnecessary asset compilation when using `javascript_include_tag` on
     files with non-standard extensions.
 *   Fixes issue where duplicate assets can be required with sprockets.
buildservice-autocommit accepted request 155219 from Stephan Kulow's avatar Stephan Kulow (coolo) (revision 23)
baserev update by copy to link target
Stephan Kulow's avatar Stephan Kulow (coolo) committed (revision 22)
- updated to version 3.2.12, version bump
buildservice-autocommit accepted request 149616 from Stephan Kulow's avatar Stephan Kulow (coolo) (revision 21)
baserev update by copy to link target
Stephan Kulow's avatar Stephan Kulow (coolo) committed (revision 20)
- updated to version 3.2.11
 * Strip nils from collections on JSON and XML posts. [CVE-2013-0155]
Stephan Kulow's avatar Stephan Kulow (coolo) committed (revision 19)
- updated to version 3.2.10, version bump
Displaying revisions 1 - 20 of 38
openSUSE Build Service is sponsored by