svn commit: r418220 - head/security/rubygem-omniauth-saml
Torsten Zuehlsdorff
tz at FreeBSD.org
Fri Jul 8 12:38:38 UTC 2016
Author: tz
Date: Fri Jul 8 12:38:36 2016
New Revision: 418220
URL: https://svnweb.freebsd.org/changeset/ports/418220
Log:
security/rubygem-omniauth-saml: update from 1.5.0 to 1.6.0
- Ensure that subclasses of OmniAuth::Stategies::SAML are registered with OmniAuth as strategies
- Update ruby-saml to 1.3 to address CVE-2016-5697 (Signature wrapping attacks)
Approved by: junovitch (mentor)
Security: CVE-2016-5697
MFH: 2016Q3
Modified:
head/security/rubygem-omniauth-saml/Makefile
head/security/rubygem-omniauth-saml/distinfo
Modified: head/security/rubygem-omniauth-saml/Makefile
==============================================================================
--- head/security/rubygem-omniauth-saml/Makefile Fri Jul 8 12:37:35 2016 (r418219)
+++ head/security/rubygem-omniauth-saml/Makefile Fri Jul 8 12:38:36 2016 (r418220)
@@ -2,7 +2,7 @@
# $FreeBSD$
PORTNAME= omniauth-saml
-PORTVERSION= 1.5.0
+PORTVERSION= 1.6.0
CATEGORIES= security rubygems
MASTER_SITES= RG
@@ -13,7 +13,7 @@ LICENSE= MIT
LICENSE_FILE= ${WRKSRC}/LICENSE.md
RUN_DEPENDS= rubygem-omniauth>=1.3:security/rubygem-omniauth \
- rubygem-ruby-saml>=1.1.1:security/rubygem-ruby-saml
+ rubygem-ruby-saml>=1.3:security/rubygem-ruby-saml
NO_ARCH= yes
USE_RUBY= yes
Modified: head/security/rubygem-omniauth-saml/distinfo
==============================================================================
--- head/security/rubygem-omniauth-saml/distinfo Fri Jul 8 12:37:35 2016 (r418219)
+++ head/security/rubygem-omniauth-saml/distinfo Fri Jul 8 12:38:36 2016 (r418220)
@@ -1,2 +1,3 @@
-SHA256 (rubygem/omniauth-saml-1.5.0.gem) = c14200903dea99c78d212bcb6be98dec5de83871f87e8acc40d2418876482fc6
-SIZE (rubygem/omniauth-saml-1.5.0.gem) = 12288
+TIMESTAMP = 1467811638
+SHA256 (rubygem/omniauth-saml-1.6.0.gem) = f95ac480b62e6aceea1d3d86621f370bff71e44411c5d1fc5d4293a111d84777
+SIZE (rubygem/omniauth-saml-1.6.0.gem) = 12288
More information about the svn-ports-all
mailing list