[DRE-maint] Bug#882034: ruby-redis-store for jessie and stretch (#882034 CVE-2017-1000248). Proposed patch

2017-12-08 Thread Cédric Boutillier
Hi, On Fri, Dec 08, 2017 at 09:31:47AM +0100, Salvatore Bonaccorso wrote: > Hi Cédric, > Thanks a lot for fixing this in unstable and experimental, so we have > quarantee that it's fixed in next stable. For stretch: Can you fix the > issue via a point release? Sure. It is too late for the

[DRE-maint] Bug#882034: ruby-redis-store for jessie and stretch (#882034 CVE-2017-1000248). Proposed patch

2017-12-08 Thread Salvatore Bonaccorso
Hi Cédric, On Fri, Dec 01, 2017 at 10:44:22PM +0100, Cédric Boutillier wrote: > Hi, > > I have prepared a patch for Debian bug #882034 (CVE-2017-1000248) from > by adapting the upstream patch from > > https://github.com/redis-store/redis-store/pull/290 > > (which should be applied after >

[DRE-maint] Bug#882034: ruby-redis-store for jessie and stretch (#882034 CVE-2017-1000248). Proposed patch

2017-12-01 Thread Cédric Boutillier
Hi, I have prepared a patch for Debian bug #882034 (CVE-2017-1000248) from by adapting the upstream patch from https://github.com/redis-store/redis-store/pull/290 (which should be applied after https://github.com/redis-store/redis-store/commit/bcd1c28cf10ff18b4352cdacbe04113af3fec68d, not