Fixes CVE-2019-3881, CVE-2020-36327
Change-Id: Ia4e6e4c1602f2a209f28c003e52d3c055e1f921d
Reviewed-on: http://photon-jenkins.eng.vmware.com:8082/13840
Tested-by: gerrit-photon <photon-checkins@vmware.com>
Reviewed-by: Sujay G <gsujay@vmware.com>
| ... | ... |
@@ -3,14 +3,16 @@ |
| 3 | 3 |
%global gem_name bundler |
| 4 | 4 |
|
| 5 | 5 |
Name: rubygem-bundler |
| 6 |
-Version: 2.1.4 |
|
| 6 |
+Version: 2.2.21 |
|
| 7 | 7 |
Release: 1%{?dist}
|
| 8 | 8 |
Summary: manages an application's dependencies |
| 9 | 9 |
Group: Development/Languages |
| 10 |
+Vendor: VMware, Inc. |
|
| 11 |
+Distribution: Photon |
|
| 10 | 12 |
License: MIT |
| 11 | 13 |
URL: https://rubygems.org/gems/%{gem_name}/versions/%{version}
|
| 12 | 14 |
Source0: https://rubygems.org/downloads/bundler-%{version}.gem
|
| 13 |
-%define sha1 bundler=d78f5cd87af76a3c5129c33028a0ea3716fe8acd |
|
| 15 |
+%define sha1 bundler=fc9e4a71393a40420810114194b60e2dadef25b5 |
|
| 14 | 16 |
BuildRequires: ruby > 2.1.0 |
| 15 | 17 |
Provides: rubygem-bundler = %{version}
|
| 16 | 18 |
|
| ... | ... |
@@ -19,7 +21,7 @@ Bundler manages an application's dependencies through its entire life |
| 19 | 19 |
across many machines, systematically and repeatably. |
| 20 | 20 |
|
| 21 | 21 |
%prep |
| 22 |
-%setup -q -c -T |
|
| 22 |
+%autosetup -c |
|
| 23 | 23 |
|
| 24 | 24 |
%build |
| 25 | 25 |
|
| ... | ... |
@@ -31,6 +33,8 @@ gem install -V --local --force --install-dir %{buildroot}/%{gemdir} %{SOURCE0}
|
| 31 | 31 |
%{gemdir}
|
| 32 | 32 |
|
| 33 | 33 |
%changelog |
| 34 |
+* Fri Jul 02 2021 Piyush Gupta <gpiyush@vmware.com> 2.2.21-1 |
|
| 35 |
+- Upgrade to 2.2.21, Fixes CVE-2020-36327, CVE-2019-3881. |
|
| 34 | 36 |
* Thu Jul 16 2020 Gerrit Photon <photon-checkins@vmware.com> 2.1.4-1 |
| 35 | 37 |
- Automatic Version Bump |
| 36 | 38 |
* Tue Sep 11 2018 srinidhira0 <srinidhir@vmware.com> 1.16.4-1 |
| ... | ... |
@@ -4,7 +4,7 @@ |
| 4 | 4 |
|
| 5 | 5 |
Name: rubygem-fluentd |
| 6 | 6 |
Version: 1.11.3 |
| 7 |
-Release: 1%{?dist}
|
|
| 7 |
+Release: 2%{?dist}
|
|
| 8 | 8 |
Summary: An open source data collector designed to scale and simplify log management |
| 9 | 9 |
Group: Development/Languages |
| 10 | 10 |
Vendor: VMware, Inc. |
| ... | ... |
@@ -43,7 +43,7 @@ Fluentd is an open source data collector designed to scale and simplify log mana |
| 43 | 43 |
It can collect, process and ship many kinds of data in near real-time. |
| 44 | 44 |
|
| 45 | 45 |
%prep |
| 46 |
-%setup -q -c -T |
|
| 46 |
+%autosetup -c |
|
| 47 | 47 |
|
| 48 | 48 |
%build |
| 49 | 49 |
|
| ... | ... |
@@ -55,6 +55,8 @@ gem install -V --local --force --install-dir %{buildroot}/%{gemdir} %{SOURCE0}
|
| 55 | 55 |
%{gemdir}
|
| 56 | 56 |
|
| 57 | 57 |
%changelog |
| 58 |
+* Mon Jul 12 2021 Piyush Gupta <gpiyush@vmware.com> 1.11.3-2 |
|
| 59 |
+- Bump up to build with rubygem-bundler upgrade. |
|
| 58 | 60 |
* Wed Sep 30 2020 Gerrit Photon <photon-checkins@vmware.com> 1.11.3-1 |
| 59 | 61 |
- Automatic Version Bump |
| 60 | 62 |
* Thu Jul 16 2020 Gerrit Photon <photon-checkins@vmware.com> 1.11.2-1 |