Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Gemfile.base, Gemfile{.on_prem}.lock: update puma to 4.3.9 #315

Merged
merged 1 commit into from Nov 18, 2021

Conversation

eguzki
Copy link
Member

@eguzki eguzki commented Nov 16, 2021

Upgrade Puma to 4.3.9

CVE-2021-29509 system: rubygem-puma: incomplete fix for CVE-2019-16770 allows Denial of Service (DoS)

https://issues.redhat.com/browse/THREESCALE-7887

Required to update 3scale puma's fork in the 3scale-4.3.9 branch

@eguzki
Copy link
Member Author

eguzki commented Nov 18, 2021

bors r+

@bors
Copy link
Contributor

bors bot commented Nov 18, 2021

Build succeeded:

@bors bors bot merged commit ef9b145 into master Nov 18, 2021
@bors bors bot deleted the upgrade-puma-4.3.9 branch November 18, 2021 15:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant