Opened 10 months ago

Closed 10 months ago

Last modified 10 months ago

#14090 closed enhancement (fixed)

ruby-272

Reported by: Bruce Dubbs Owned by: Bruce Dubbs
Priority: high Milestone: 10.1
Component: BOOK Version: SVN
Severity: normal Keywords:
Cc:

Description

New point version.

Change History (4)

comment:1 by Bruce Dubbs, 10 months ago

Owner: changed from blfs-book to Bruce Dubbs
Status: newassigned

comment:2 by Bruce Dubbs, 10 months ago

Ruby 2.7.2 has been released.

This release contains intentional incompatibility. Deprecation warnings are off by default on 2.7.2 and later. You can turn on deprecation warnings by specifying the -w or -W:deprecated option at the command-line. Please check the topics below for details.

  • Feature #17000 2.7.2 turns off deprecation warnings by default
  • Feature #16345 Don’t emit deprecation warnings by default.

This release contains the new version of webrick with a security fix described in the article.

CVE-2020-25613: Potential HTTP Request Smuggling Vulnerability in WEBrick

comment:3 by Bruce Dubbs, 10 months ago

Resolution: fixed
Status: assignedclosed

Fixed at revision 23789.

comment:4 by Douglas R. Reno, 10 months ago

Priority: normalhigh

Mark high for CVE-2020-25613

Note: See TracTickets for help on using tickets.