Project

General

Profile

Actions

Bug #20667

closed

Backport REXML CVE fixes

Bug #20667: Backport REXML CVE fixes

Added by vo.x (Vit Ondruch) about 1 year ago. Updated about 1 year ago.

Status:
Closed
Assignee:
-
Target version:
-
ruby -v:
ruby 3.3.4 (2024-07-09 revision be1089c8ec) [x86_64-linux]
[ruby-core:118796]

Description

It would be nice to have the recent REXML CVE fixes backported everywhere.

BTW it is surprising that REXML was recently bumped in 3.1 / 3.2 branches, but 3.3 branch stays with older REXML 3.2.

Updated by hsbt (Hiroshi SHIBATA) about 1 year ago Actions #1

  • Status changed from Open to Closed
  • Backport changed from 3.1: UNKNOWN, 3.2: UNKNOWN, 3.3: UNKNOWN to 3.1: REQUIRED, 3.2: REQUIRED, 3.3: REQUIRED

Updated by kou (Kouhei Sutou) about 1 year ago Actions #2

  • Subject changed from Backport ReXML CVE fixes to Backport REXML CVE fixes
  • Description updated (diff)

Updated by nagachika (Tomoyuki Chikanaga) about 1 year ago Actions #3 [ruby-core:118868]

  • Backport changed from 3.1: REQUIRED, 3.2: REQUIRED, 3.3: REQUIRED to 3.1: REQUIRED, 3.2: DONE, 3.3: REQUIRED

Updated by k0kubun (Takashi Kokubun) about 1 year ago Actions #4 [ruby-core:119005]

  • Backport changed from 3.1: REQUIRED, 3.2: DONE, 3.3: REQUIRED to 3.1: REQUIRED, 3.2: DONE, 3.3: DONE

Updated by k0kubun (Takashi Kokubun) about 1 year ago Actions #5 [ruby-core:119006]

Please consider filing a backport PR to stable branches next time.

Updated by hsbt (Hiroshi SHIBATA) about 1 year ago Actions #6 [ruby-core:119109]

  • Backport changed from 3.1: REQUIRED, 3.2: DONE, 3.3: DONE to 3.1: DONE, 3.2: DONE, 3.3: DONE
Actions

Also available in: PDF Atom