On 12/14 02:08, Jeremy Evans wrote:
> Bump to the latest release of ruby 2.3 and 2.4.
Here's a backport for 6.2-stable. Due to the minimal changes, for ruby
2.2, 2.3, and 2.4, I'm just using the newer upstream version directly.
Both security issues need to be backported to 2.1, and one security
i
Bump to the latest release of ruby 2.3 and 2.4.
Release announcements at:
https://www.ruby-lang.org/en/news/2017/12/14/ruby-2-3-6-released/
https://www.ruby-lang.org/en/news/2017/12/14/ruby-2-4-3-released/
Vulnerabilities Fixed:
https://www.ruby-lang.org/en/news/2017/12/14/net-ftp-command-injec