[Pkg-cli-libs-commits] [SCM] ironruby branch, master, updated. debian/20090805+git.e6b28d27+dfsg-3-6-g320984a

Iain Lane laney at debian.org
Wed Jun 8 10:04:31 UTC 2011


The following commit has been merged in the master branch:
commit 320984a006761b250a1c84b171f37ba065d1fad6
Merge: 1287d5be7e5ebbf0b2a46388166f64a62f26b4f3 9bef8cf4a66e53ff465c8652459e2c55d99dd4e6
Author: Iain Lane <laney at debian.org>
Date:   Wed Jun 8 11:04:25 2011 +0100

    Merge branch 'squeeze'
    
    Conflicts:
    	debian/changelog

diff --combined debian/changelog
index 8ecf775,59efc57..3f10d30
--- a/debian/changelog
+++ b/debian/changelog
@@@ -1,15 -1,19 +1,27 @@@
- dlr-languages (20090805+git.e6b28d27+dfsg-3) unstable; urgency=low
++dlr-languages (20090805+git.e6b28d27+dfsg-4) UNRELEASED; urgency=low
 +
 +  * added the -X:TabCompletion argument to ir wrapper script
 +
 + -- C.J. Adams-Collier <cjac at colliertech.org>  Thu, 01 Apr 2010 10:56:08 -0700
 +
+ dlr-languages (20090805+git.e6b28d27+dfsg-3) unstable; urgency=high
+ 
+   * [6240cf9] debian/ipy: Set $IRONPYTHONPATH in a secure way. The ipy
+     wrapper originally appended /usr/lib/python2.6 to $IRONPYTHONPATH
+     without checking if the variable was originally unset or empty. If
+     it was, this would cause an empty entry to be added to the variable,
+     which is treated as the current directory. In this case, a potential
+     for local exploitation exists. Fix the wrapper to only consider the
+     original variable if it contains data. (Closes: #605158)
+ 
+  -- Iain Lane <laney at ubuntu.com>  Sat, 04 Dec 2010 19:55:44 +0000
+ 
  dlr-languages (20090805+git.e6b28d27+dfsg-2) unstable; urgency=low
  
 -  * passing -X:TabCompletion argument to ipy.exe from ipy so that ^D<enter> exits the REPL
 -  * modified IRONPYTHONPATH in ipy to include the python standard library
 +  * Modified IronPython wrapper script, ipy:
 +    + Now passing -X:TabCompletion argument to ipy.exe from ipy so that
 +      ^D<enter> exits the REPL
 +    + Modified IRONPYTHONPATH in ipy to include the python standard library
    * added Suggests: python2.6-minimal to debian/control
  
   -- C.J. Adams-Collier <cjac at colliertech.org>  Wed, 17 Mar 2010 10:27:11 -0700

-- 
ironruby



More information about the Pkg-cli-libs-commits mailing list