Name: | rh-ror50-rubygem-actionpack |
---|---|
Epoch: | 1 |
Version: | 5.0.1 |
Release: | 2.el7 |
Architecture: | noarch |
Group: | Development/Languages |
Size: | 723008 |
License: | MIT |
RPM: | rh-ror50-rubygem-actionpack-5.0.1-2.el7.noarch.rpm |
Source RPM: | rh-ror50-rubygem-actionpack-5.0.1-2.el7.src.rpm |
Build Date: | Mon May 13 2019 |
Build Host: | x86-ol7-builder-03.us.oracle.com |
Vendor: | Oracle America |
URL: | http://rubyonrails.org |
Summary: | Web-flow and rendering framework putting the VC in MVC (part of Rails) |
Description: | Eases web-request routing, handling, and response as a half-way front, half-way page controller. Implemented with specific emphasis on enabling easy unit/integration testing that doesn't require a browser. |
- Fix a render file directory traversal in Action View Resolves: CVE-2019-5418 - Fix a denial of service vulnerability in Action View Resolves: CVE-2019-5419
- Update to Action Pack 5.0.1.
- Fix for CVE-2016-6317 Resolves: rhbz#1365017
- Enable tests
- Update to 4.2.6
- Allow one failing test
- Add nodejs to BuildRequires
- Update to 4.2.5.1
- Fix Timing attack vulnerability in Action Controller - rhbz#1301933 - Resolves: CVE-2015-7576 - Fix Possible Object Leak and Denial of Service attack - rhbz#1301946 - Resolves: CVE-2016-0751 - Fix Possible Information Leak Vulnerability - rhbz#1301963 - Resolves: CVE-2016-0752 - Fix Object leak vulnerability for wildcard controller routes - rhbz#1301981 - Resolves: CVE-2015-7581
- Remove obsolete patch.