[#120855] [Ruby master Bug#21104] Net::HTTP connections failing in Ruby >= 3.4.0 on macOS with Happy Eyeballs enabled — "mjt58 (Mike Thompson) via ruby-core" <ruby-core@...>

Issue #21104 has been reported by mjt58 (Mike Thompson).

14 messages 2025/02/01

[#120873] [Ruby master Bug#21111] RbConfig::CONFIG['CXX'] quietly set to "false" when Ruby cannot build C++ programs — "stanhu (Stan Hu) via ruby-core" <ruby-core@...>

Issue #21111 has been reported by stanhu (Stan Hu).

10 messages 2025/02/03

[#120884] [Ruby master Bug#21115] Etc.getgrgid is not Ractor-safe but is marked as such — "Eregon (Benoit Daloze) via ruby-core" <ruby-core@...>

Issue #21115 has been reported by Eregon (Benoit Daloze).

7 messages 2025/02/05

[#120897] [Ruby master Bug#21119] Programs containing `Dir.glob` with a thread executing a CPU-heavy task run very slowly. — "genya0407 (Yusuke Sangenya) via ruby-core" <ruby-core@...>

Issue #21119 has been reported by genya0407 (Yusuke Sangenya).

6 messages 2025/02/06

[#121054] [Ruby master Bug#21139] Prism and parse.y parses `it = it` differently — "tompng (tomoya ishida) via ruby-core" <ruby-core@...>

Issue #21139 has been reported by tompng (tomoya ishida).

19 messages 2025/02/14

[#121060] [Ruby master Feature#21140] Add a method to get the address of certain JIT related functions — "tenderlovemaking (Aaron Patterson) via ruby-core" <ruby-core@...>

Issue #21140 has been reported by tenderlovemaking (Aaron Patterson).

23 messages 2025/02/14

[#121077] [Ruby master Misc#21143] Speficy order of execution const_added vs inherited — "fxn (Xavier Noria) via ruby-core" <ruby-core@...>

Issue #21143 has been reported by fxn (Xavier Noria).

15 messages 2025/02/17

[#121142] [Ruby master Misc#21154] Document or change Module#autoload? — "fxn (Xavier Noria) via ruby-core" <ruby-core@...>

Issue #21154 has been reported by fxn (Xavier Noria).

32 messages 2025/02/23

[#121172] [Ruby master Feature#21157] Comparison operator <> — lpogic via ruby-core <ruby-core@...>

SXNzdWUgIzIxMTU3IGhhcyBiZWVuIHJlcG9ydGVkIGJ5IGxwb2dpYyAoxYF1a2FzeiBQb21pZXTF

11 messages 2025/02/26

[ruby-core:120960] [Ruby master Bug#21130] Update net-imap for ruby 3.2, 3.3, 3.4

From: "nevans (Nicholas Evans) via ruby-core" <ruby-core@...>
Date: 2025-02-12 23:05:24 UTC
List: ruby-core #120960
Issue #21130 has been reported by nevans (Nicholas Evans).

----------------------------------------
Bug #21130: Update net-imap for ruby 3.2, 3.3, 3.4
https://bugs.ruby-lang.org/issues/21130

* Author: nevans (Nicholas Evans)
* Status: Open
* Backport: 3.1: UNKNOWN, 3.2: UNKNOWN, 3.3: UNKNOWN, 3.4: UNKNOWN
----------------------------------------
The bundled versions are vulnerable to CVE-2024-25186 (https://www.cve.org/CVERecord?id=CVE-2025-25186).  Fixing the issue requires upgrading to v0.3.8, v0.4.19, or v0.5.4.

* ruby 3.2.7 bundles net-imap v0.3.4.1
  PR: Bump net-imap to 0.3.8 for Ruby 3.2
  https://github.com/ruby/ruby/pull/12733
* ruby 3.3.7 bundles net-imap v0.4.9.1
  PR: Bump net-imap to 0.4.19 for Ruby 3.3
  https://github.com/ruby/ruby/pull/12732
* ruby 3.4.1 bundles net-imap v0.5.4
  PR: Bump net-imap to v0.5.6 for Ruby 3.4
  https://github.com/ruby/ruby/pull/12731

The workaround is to uninstall the vulnerable bundled versions and `gem install net-imap`.



-- 
https://bugs.ruby-lang.org/
 ______________________________________________
 ruby-core mailing list -- [email protected]
 To unsubscribe send an email to [email protected]
 ruby-core info -- https://ml.ruby-lang.org/mailman3/lists/ruby-core.ml.ruby-lang.org/


In This Thread

Prev Next