Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 8 Jul 2016 12:38:36 +0000 (UTC)
From:      Torsten Zuehlsdorff <tz@FreeBSD.org>
To:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   svn commit: r418220 - head/security/rubygem-omniauth-saml
Message-ID:  <201607081238.u68CcaHk073818@repo.freebsd.org>

next in thread | raw e-mail | index | archive | help
Author: tz
Date: Fri Jul  8 12:38:36 2016
New Revision: 418220
URL: https://svnweb.freebsd.org/changeset/ports/418220

Log:
  security/rubygem-omniauth-saml: update from 1.5.0 to 1.6.0
  
  - Ensure that subclasses of OmniAuth::Stategies::SAML are registered with OmniAuth as strategies
  - Update ruby-saml to 1.3 to address CVE-2016-5697 (Signature wrapping attacks)
  
  Approved by: junovitch (mentor)
  Security:    CVE-2016-5697
  MFH:         2016Q3

Modified:
  head/security/rubygem-omniauth-saml/Makefile
  head/security/rubygem-omniauth-saml/distinfo

Modified: head/security/rubygem-omniauth-saml/Makefile
==============================================================================
--- head/security/rubygem-omniauth-saml/Makefile	Fri Jul  8 12:37:35 2016	(r418219)
+++ head/security/rubygem-omniauth-saml/Makefile	Fri Jul  8 12:38:36 2016	(r418220)
@@ -2,7 +2,7 @@
 # $FreeBSD$
 
 PORTNAME=	omniauth-saml
-PORTVERSION=	1.5.0
+PORTVERSION=	1.6.0
 CATEGORIES=	security rubygems
 MASTER_SITES=	RG
 
@@ -13,7 +13,7 @@ LICENSE=	MIT
 LICENSE_FILE=	${WRKSRC}/LICENSE.md
 
 RUN_DEPENDS=	rubygem-omniauth>=1.3:security/rubygem-omniauth \
-		rubygem-ruby-saml>=1.1.1:security/rubygem-ruby-saml
+		rubygem-ruby-saml>=1.3:security/rubygem-ruby-saml
 
 NO_ARCH=	yes
 USE_RUBY=	yes

Modified: head/security/rubygem-omniauth-saml/distinfo
==============================================================================
--- head/security/rubygem-omniauth-saml/distinfo	Fri Jul  8 12:37:35 2016	(r418219)
+++ head/security/rubygem-omniauth-saml/distinfo	Fri Jul  8 12:38:36 2016	(r418220)
@@ -1,2 +1,3 @@
-SHA256 (rubygem/omniauth-saml-1.5.0.gem) = c14200903dea99c78d212bcb6be98dec5de83871f87e8acc40d2418876482fc6
-SIZE (rubygem/omniauth-saml-1.5.0.gem) = 12288
+TIMESTAMP = 1467811638
+SHA256 (rubygem/omniauth-saml-1.6.0.gem) = f95ac480b62e6aceea1d3d86621f370bff71e44411c5d1fc5d4293a111d84777
+SIZE (rubygem/omniauth-saml-1.6.0.gem) = 12288



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201607081238.u68CcaHk073818>