Summary: | <dev-ruby/rdoc{5.1.0-r1,6.1.2,6.2.0}: Multiple jQuery vulnerabilities | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Hans de Graaff <graaff> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | ruby |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://www.ruby-lang.org/en/news/2019/08/28/multiple-jquery-vulnerabilities-in-rdoc/ | ||
Whiteboard: | B4 [noglsa] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 688976, 693030, 693358 | ||
Bug Blocks: |
Description
Hans de Graaff
![]() ![]() We unbundle rdoc from dev-lang/ruby, so the upstream ruby releases are not relevant for this security bug. Fixed versions in the tree: dev-ruby/rdoc-5.1.0-r1 (port from unrelease 5.x version upstream) dev-ruby/rdoc-6.1.2 dev-ruby/rdoc-6.2.0 The ruby releases other than ruby 2.4.7 also contain additional changes that need to be tested first. In addition ruby 2.5 is in the process of being stabled. I will file separate stable bugs for 2.4 and (once tested) 2.5 as blockers for this bug. Cleanup done. (In reply to Hans de Graaff from comment #1) > We unbundle rdoc from dev-lang/ruby, so the upstream ruby releases are not > relevant for this security bug. > > Fixed versions in the tree: > > dev-ruby/rdoc-5.1.0-r1 (port from unrelease 5.x version upstream) > dev-ruby/rdoc-6.1.2 > dev-ruby/rdoc-6.2.0 > > The ruby releases other than ruby 2.4.7 also contain additional changes that > need to be tested first. In addition ruby 2.5 is in the process of being > stabled. I will file separate stable bugs for 2.4 and (once tested) 2.5 as > blockers for this bug. Thank you for the summary, it is appreciated! :) |