From owner-freebsd-ruby@freebsd.org Wed Apr 7 10:43:51 2021 Return-Path: Delivered-To: freebsd-ruby@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id BDC865D28C2 for ; Wed, 7 Apr 2021 10:43:51 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mailman.nyi.freebsd.org (unknown [127.0.1.3]) by mx1.freebsd.org (Postfix) with ESMTP id 4FFgx34qPCz4qpd for ; Wed, 7 Apr 2021 10:43:51 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: by mailman.nyi.freebsd.org (Postfix) id A591F5D29EB; Wed, 7 Apr 2021 10:43:51 +0000 (UTC) Delivered-To: ruby@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id A55E45D2667 for ; Wed, 7 Apr 2021 10:43:51 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4FFgx34DkCz4qRy for ; Wed, 7 Apr 2021 10:43:51 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 844B71DF0C for ; Wed, 7 Apr 2021 10:43:51 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 137AhpQY081728 for ; Wed, 7 Apr 2021 10:43:51 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from bugzilla@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 137Ahp1r081727 for ruby@FreeBSD.org; Wed, 7 Apr 2021 10:43:51 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: bugzilla set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: ruby@FreeBSD.org Subject: [Bug 253822] lang/jruby: Update to 9.2.17.0 Date: Wed, 07 Apr 2021 10:43:51 +0000 X-Bugzilla-Reason: CC X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Ports & Packages X-Bugzilla-Component: Individual Port(s) X-Bugzilla-Version: Latest X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Some People X-Bugzilla-Who: commit-hook@FreeBSD.org X-Bugzilla-Status: In Progress X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: meta@FreeBSD.org X-Bugzilla-Flags: maintainer-feedback? X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated MIME-Version: 1.0 X-BeenThere: freebsd-ruby@freebsd.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: FreeBSD-specific Ruby discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 07 Apr 2021 10:43:51 -0000 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D253822 --- Comment #4 from commit-hook@FreeBSD.org --- A commit in branch main references this bug: URL: https://cgit.FreeBSD.org/ports/commit/?id=3D8147a5a7044e7a055288252731de647= ca5e4ecd1 commit 8147a5a7044e7a055288252731de647ca5e4ecd1 Author: Koichiro Iwao AuthorDate: 2021-04-07 10:37:06 +0000 Commit: Koichiro Iwao CommitDate: 2021-04-07 10:42:46 +0000 lang/jruby: Update to 9.2.17.0 CVEs are fixed at 9.2.15.0. PR: 253822 Reported by: Thomas Hurst Relnotes: https://www.jruby.org/2021/03/29/jruby-9-2-17-0.html Security: CVE-2011-4815 Security: CVE-2017-17742 Security: CVE-2019-16254 Security: CVE-2020-25613 Security: CVE-2017-18640 lang/jruby/Makefile | 3 +- lang/jruby/distinfo | 6 +- lang/jruby/pkg-plist | 357 ++++++++++++++++++++++++++++++-----------------= ---- 3 files changed, 213 insertions(+), 153 deletions(-) --=20 You are receiving this mail because: You are on the CC list for the bug.=