Created attachment 223836 [details] Patch file Update to 2.5.9, which includes fix of CVE-2021-28965. Release Note: https://www.ruby-lang.org/en/news/2021/04/05/ruby-2-5-9-released/ Bub #254793 describes vulnerability fixed with this release. So please commit it together.
A commit in branch main references this bug: URL: https://cgit.FreeBSD.org/ports/commit/?id=d852d12dd264057709220450a10e56757d68cb31 commit d852d12dd264057709220450a10e56757d68cb31 Author: Koichiro Iwao <meta@FreeBSD.org> AuthorDate: 2021-04-06 12:41:49 +0000 Commit: Koichiro Iwao <meta@FreeBSD.org> CommitDate: 2021-04-06 12:44:30 +0000 lang/ruby25: Update to 2.5.9 PR: 254799 Reported by: Yasuhiro Kimura <yasu@utahime.org> Reviewed by: meta (myself) Relnotes: https://www.ruby-lang.org/en/news/2021/04/05/ruby-2-5-9-released/ Mk/bsd.ruby.mk | 4 +-- lang/ruby25/distinfo | 6 ++-- lang/ruby25/pkg-plist | 78 +++++++++++++++++++++++++++------------------------ 3 files changed, 47 insertions(+), 41 deletions(-)
Committed, thanks!