Skip to content

Commit d08baf4

Browse files
authored
Merge pull request ruby#1 from nagachika/release_2_4_2
Add 2.4.2 release announce
2 parents 9613926 + 15133a0 commit d08baf4

File tree

2 files changed

+111
-0
lines changed

2 files changed

+111
-0
lines changed
Lines changed: 57 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,57 @@
1+
---
2+
layout: news_post
3+
title: "Ruby 2.4.2 Released"
4+
author: "nagachika"
5+
translator:
6+
date: 2017-09-14 00:00:00 +0000
7+
lang: en
8+
---
9+
10+
We are pleased to announce the release of Ruby 2.4.2.
11+
This release contains some security fixes.
12+
13+
* [CVE-2017-0898: Buffer underrun vulnerability in Kernel.sprintf](/en/news/2017/09/13/sprintf-buffer-underrun-cve-2017-0898/)
14+
* [CVE-2017-10784: Escape sequence injection vulnerability in the Basic authentication of WEBrick](/en/news/2017/09/13/webrick-basic-auth-escape-sequence-injection-cve-2017-10784/)
15+
* [CVE-2017-14033: Buffer underrun vulnerability in OpenSSL ASN1 docod](/en/news/2017/09/13/openssl-asn1-buffer-underrun-cve-2017-14033/)
16+
* [CVE-2017-14064: Heap exposure in generating JSON](/en/news/2017/09/13/json-heap-exposure-cve-2017-14064/)
17+
* [Multiple vulnerabilities in RubyGems](/en/news/2017/08/29/multiple-vulnerabilities-in-rubygems/)
18+
* Update bundled libyaml to version 0.1.7.
19+
20+
There are also many bug-fixes.
21+
See [commit logs](https://github.com/ruby/ruby/compare/v2_4_0...v2_4_1) for more details.
22+
23+
## Download
24+
25+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.tar.bz2>
26+
27+
SIZE: 11830222 bytes
28+
SHA1: ecd2d709d62905692ce5010e804c29a9bee045e0
29+
SHA256: f98170527209e94c74c5d6f24f0c0bf2d91e325c003fa133c7e7a2dcf7ec7623
30+
SHA512: 05cb129dee72ac8e2aa3a330e347bd8e895379cb0c460a5d745f6af3151c8030eb2ae4657c283f1e97f457c682606f88535b938d97579148bfb3573db5b37577
31+
32+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.tar.gz>
33+
34+
SIZE: 13253704 bytes
35+
SHA1: 0abd787c8d675505bee047f5e2abc8294fdd03cf
36+
SHA256: a7fc9c7ea65f28262e4a3d62bb2ed0c6b089d6cc415f307093bd8fd03c1a6ecc
37+
SHA512: a05351625fa21f30b6bbdd9ceb63821a1e65c42fe1349e9e3b7468ca7f6e3b97306cb49afbb61b7ded679b1099b31b4b35b392c236248529f651121f863e9c69
38+
39+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.tar.xz>
40+
41+
SIZE: 9448724 bytes
42+
SHA1: 9a14ac6ee2c75849bbce2daadb76272344ab7513
43+
SHA256: 03b62335f71a54b0868c49cd097eaa0597cc75855da7261ab32cd4e7dd58d8d7
44+
SHA512: f8159c2d912f6937927f2d74fa7f72e33b941aeb895ff55dc7386cff66f8b892a46a387cfcf8d756ea2ea8e12d6a878f150e622353d9f559fe5fe9308d69d762
45+
46+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.zip>
47+
48+
SIZE: 14466329 bytes
49+
SHA1: a098be69d81d8a584049bdc483523fb4a0e8b29f
50+
SHA256: e541547e82bfd03b05a2ec486c146b4c3a762be35bd402d30995920d9a5880f7
51+
SHA512: 3e4ec635adb512b0891225b7be4d2df0c714de89fbb9835cd8b0fc36d0328bbcb7ac5d67e8295126ebaf2c6c15497d2e1f49c7dc98bb4be79eca3f9cd11cf6e3
52+
53+
## Release Comment
54+
55+
Many committers, developers, and users who provided bug reports helped
56+
us to make this release.
57+
Thanks for their contributions.
Lines changed: 54 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,54 @@
1+
---
2+
layout: news_post
3+
title: "Ruby 2.4.2 リリース"
4+
author: "nagachika"
5+
translator:
6+
date: 2017-09-14 00:00:00 +0000
7+
lang: ja
8+
---
9+
10+
Ruby 2.4.2 がリリースされました。
11+
このリリースにはいくつかの脆弱性修正が含まれています。
12+
13+
* [CVE-2017-0898: Kernel.sprintf におけるバッファーアンダーラン](/ja/news/2017/09/13/sprintf-buffer-underrun-cve-2017-0898/)への対応
14+
* [CVE-2017-10784: WEBrick の BASIC 認証におけるエスケープシーケンス挿入](/ja/news/2017/09/13/webrick-basic-auth-escape-sequence-injection-cve-2017-10784/)への対応
15+
* [CVE-2017-14033: OpenSSL の ASN1 デコードにおけるバッファーアンダーラン](/ja/news/2017/09/13/openssl-asn1-buffer-underrun-cve-2017-14033/)への対応
16+
* [CVE-2017-14064: JSON の生成時におけるヒープ暴露](/ja/news/2017/09/13/json-heap-exposure-cve-2017-14064/)への対応
17+
* [RubyGems の複数の脆弱性](/ja/news/2017/08/29/multiple-vulnerabilities-in-rubygems/)への対応
18+
* 添付の libyaml を 0.1.7 に更新
19+
20+
その他多くのバグ修正も含まれます。詳細は [commit log](https://github.com/ruby/ruby/compare/v2_4_1...v2_4_2) を参照してください。
21+
22+
## ダウンロード
23+
24+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.tar.bz2>
25+
26+
SIZE: 11830222 bytes
27+
SHA1: ecd2d709d62905692ce5010e804c29a9bee045e0
28+
SHA256: f98170527209e94c74c5d6f24f0c0bf2d91e325c003fa133c7e7a2dcf7ec7623
29+
SHA512: 05cb129dee72ac8e2aa3a330e347bd8e895379cb0c460a5d745f6af3151c8030eb2ae4657c283f1e97f457c682606f88535b938d97579148bfb3573db5b37577
30+
31+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.tar.gz>
32+
33+
SIZE: 13253704 bytes
34+
SHA1: 0abd787c8d675505bee047f5e2abc8294fdd03cf
35+
SHA256: a7fc9c7ea65f28262e4a3d62bb2ed0c6b089d6cc415f307093bd8fd03c1a6ecc
36+
SHA512: a05351625fa21f30b6bbdd9ceb63821a1e65c42fe1349e9e3b7468ca7f6e3b97306cb49afbb61b7ded679b1099b31b4b35b392c236248529f651121f863e9c69
37+
38+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.tar.xz>
39+
40+
SIZE: 9448724 bytes
41+
SHA1: 9a14ac6ee2c75849bbce2daadb76272344ab7513
42+
SHA256: 03b62335f71a54b0868c49cd097eaa0597cc75855da7261ab32cd4e7dd58d8d7
43+
SHA512: f8159c2d912f6937927f2d74fa7f72e33b941aeb895ff55dc7386cff66f8b892a46a387cfcf8d756ea2ea8e12d6a878f150e622353d9f559fe5fe9308d69d762
44+
45+
* <https://cache.ruby-lang.org/pub/ruby/2.4/ruby-2.4.2.zip>
46+
47+
SIZE: 14466329 bytes
48+
SHA1: a098be69d81d8a584049bdc483523fb4a0e8b29f
49+
SHA256: e541547e82bfd03b05a2ec486c146b4c3a762be35bd402d30995920d9a5880f7
50+
SHA512: 3e4ec635adb512b0891225b7be4d2df0c714de89fbb9835cd8b0fc36d0328bbcb7ac5d67e8295126ebaf2c6c15497d2e1f49c7dc98bb4be79eca3f9cd11cf6e3
51+
52+
## リリースコメント
53+
54+
このリリースにあたり、多くのコミッター、開発者、バグ報告をしてくれたユーザーの皆様に感謝を申し上げます。

0 commit comments

Comments
 (0)