Format: 1.8 Date: Thu, 28 Jan 2016 10:56:35 -0200 Source: rails Binary: ruby-activesupport ruby-activerecord ruby-activemodel ruby-activejob ruby-actionview ruby-actionpack ruby-actionmailer ruby-railties ruby-rails rails Architecture: all Version: 2:4.2.5.1-1 Distribution: xenial-proposed Urgency: high Maintainer: Launchpad Build Daemon Changed-By: Antonio Terceiro Description: rails - MVC ruby based framework geared for web application development ( ruby-actionmailer - email composition, delivery, and receiving framework (part of Rai ruby-actionpack - web-flow and rendering framework putting the VC in MVC (part of R ruby-actionview - framework for handling view template lookup and rendering (part o ruby-activejob - job framework with pluggable queues ruby-activemodel - toolkit for building modeling frameworks (part of Rails) ruby-activerecord - object-relational mapper framework (part of Rails) ruby-activesupport - Support and utility classes used by the Rails 4.1 framework ruby-rails - MVC ruby based framework geared for web application development ruby-railties - tools for creating, working with, and running Rails applications Changes: rails (2:4.2.5.1-1) unstable; urgency=high . * New upstream release. Includes fixes for the following several security issues: - [CVE-2015-7576] Timing attack vulnerability in basic authentication in Action Controller. - [CVE-2016-0751] Possible Object Leak and Denial of Service attack in Action Pack - [CVE-2015-7577] Nested attributes rejection proc bypass in Active Record. - [CVE-2016-0752] Possible Information Leak Vulnerability in Action View - [CVE-2016-0753] Possible Input Validation Circumvention in Active Model - [CVE-2015-7581] Object leak vulnerability for wildcard controller routes in Action Pack Checksums-Sha1: 6c169b420cc4929b67e943b231641ae1a9c179f6 8710 rails_4.2.5.1-1_all.deb 76da83d99751dacf5cc233fd07e170610b9c2bea 29598 ruby-actionmailer_4.2.5.1-1_all.deb 797c8508393a2d09c89d04c884c237e560b953bd 156068 ruby-actionpack_4.2.5.1-1_all.deb 529233319649f3b6271a5a219d753c47a1101d40 122572 ruby-actionview_4.2.5.1-1_all.deb cab45485dbe21262a4ec280469fdb7f723553023 22924 ruby-activejob_4.2.5.1-1_all.deb b1430a69271e1a296ee9d229509d620edd81bcb9 45552 ruby-activemodel_4.2.5.1-1_all.deb 992263c5a88bb14bc763b3259b8ae00987c4eeca 258950 ruby-activerecord_4.2.5.1-1_all.deb 6f57b92bb2fda5ee5ce0da3668c808288d305026 204308 ruby-activesupport_4.2.5.1-1_all.deb 6083b0f42335945a0b43f081f6a382f0874e546a 13478 ruby-rails_4.2.5.1-1_all.deb ff3573b0f249eedae62567c3a36635a03b7c682e 114944 ruby-railties_4.2.5.1-1_all.deb Checksums-Sha256: ec18395d514983126bec9201311d62acc75b147ac8cfbd268be640ceed10b886 8710 rails_4.2.5.1-1_all.deb aa152d2f811fe49bf0ec394ff734b0909bc325459d16663b232d03950ca2efdd 29598 ruby-actionmailer_4.2.5.1-1_all.deb 4bf880a5918419533233cc36a5a2f82d4287cf5909d89594b059b283bb8545f7 156068 ruby-actionpack_4.2.5.1-1_all.deb b15ac8e3b9178e25acfe590fe0c691052c573626c170cfe032bf54066871455a 122572 ruby-actionview_4.2.5.1-1_all.deb f3ffd53a8db14fb9b37321f9cb4bbd2ca80d88476b07bd847bc5d6186e449c31 22924 ruby-activejob_4.2.5.1-1_all.deb 92c090f23230450fc5a8f4f7c1374f420f0c0479f7f2c2928f56dd99372200a4 45552 ruby-activemodel_4.2.5.1-1_all.deb c4a7104c229524cc7571f5170e9c19476c42eed62dbe84668dd3b8dccb8b9a98 258950 ruby-activerecord_4.2.5.1-1_all.deb d2582069d3f107f5f55ceab889bf2588736ac75115a8287ff846071a3e350a14 204308 ruby-activesupport_4.2.5.1-1_all.deb 050458fe598d815032438618b522ebb36da3e3d531edf26bd01ab70b0cf4876b 13478 ruby-rails_4.2.5.1-1_all.deb ee7e1122e164eff80255ebcc829f54fd9c6eb606d3a4788648fd11b94aef0fa2 114944 ruby-railties_4.2.5.1-1_all.deb Files: f483d08ffda528e4d36e6216a73e2707 8710 ruby optional rails_4.2.5.1-1_all.deb 91bbd160a14b28c25c537656dd732065 29598 ruby optional ruby-actionmailer_4.2.5.1-1_all.deb c1456d756a0e68ce6baf1ad1d3ee70a0 156068 ruby optional ruby-actionpack_4.2.5.1-1_all.deb f3e701cb37bdc5547467a13dc7812169 122572 ruby optional ruby-actionview_4.2.5.1-1_all.deb 9f56ec7f486097dc74cf8f06cfba0d75 22924 ruby optional ruby-activejob_4.2.5.1-1_all.deb 95b904c5e2b9d6b3c047a47bdec343eb 45552 ruby optional ruby-activemodel_4.2.5.1-1_all.deb 66c86c58f6b8023865db45919f242800 258950 ruby optional ruby-activerecord_4.2.5.1-1_all.deb fb46562950ede6e81bf0b364932083d4 204308 ruby optional ruby-activesupport_4.2.5.1-1_all.deb c746beaf4a34c5b55a5da82b69daf10e 13478 ruby optional ruby-rails_4.2.5.1-1_all.deb 2e31a48f0602ca54db8fbdce6686c026 114944 ruby optional ruby-railties_4.2.5.1-1_all.deb