You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
In recent few days ago, rubygems tests were failed in my dev machine.
1) Failure:
TestGemSourceGit#test_checkout_submodules [/Users/hsbt/Documents/github.com/ruby/ruby/test/rubygems/test_gem_source_git.rb:73]:
fatal: transport 'file' not allowed
fatal: clone of '/Users/hsbt/Documents/github.com/ruby/ruby/tmp/test_rubygems_20221019-16443-neo1ri/git/b' into submodule path '/Users/hsbt/Documents/github.com/ruby/ruby/tmp/test_rubygems_20221019-16443-neo1ri/git/a/b' failed
hsbt
changed the title
CVS-2022-39253 break RubyGems/Bundler tests and behavior.
CVE-2022-39253 break RubyGems/Bundler tests and behavior.
Oct 19, 2022
Describe the problem as clearly as you can
In recent few days ago, rubygems tests were failed in my dev machine.
What actually happened?
https://github.blog/2022-10-18-git-security-vulnerabilities-announced/#cve-2022-39253
Git 2.38.1 refuse to
git submodule add
with file protocol. We should handle cve-2022-39253 changes to RubyGems/Bundler for Git.The text was updated successfully, but these errors were encountered: