Bug 254805

Summary: textproc/rubygem-rexml: Update to 3.2.5
Product: Ports & Packages Reporter: Yasuhiro Kimura <yasu>
Component: Individual Port(s)Assignee: Po-Chuan Hsieh <sunpoet>
Status: Closed FIXED    
Severity: Affects Only Me CC: mfechner
Priority: --- Flags: bugzilla: maintainer-feedback? (sunpoet)
Version: Latest   
Hardware: Any   
OS: Any   
URL: https://github.com/ruby/rexml/commits/v3.2.5
Attachments:
Description Flags
Patch file none

Description Yasuhiro Kimura freebsd_committer freebsd_triage 2021-04-05 20:22:52 UTC
Created attachment 223843 [details]
Patch file

Update to 3.2.5, which includes fix of CVE-2021-28965.

Changes: https://github.com/ruby/rexml/commits/v3.2.5

Bug #254793 describes vulnerability fixed with this release. So please commit it together.
Comment 1 Matthias Fechner freebsd_committer freebsd_triage 2021-04-15 14:40:13 UTC
This update also blocks a security update of gitlab-ce.
Comment 2 Yasuhiro Kimura freebsd_committer freebsd_triage 2021-04-19 00:52:27 UTC
Updated to 3.2.5 with ports 3d1a0c161c08.