diff options
author | drbrain <drbrain@b2dd03c8-39d4-4d8f-98ff-823fe69b080e> | 2013-02-05 02:37:35 +0000 |
---|---|---|
committer | drbrain <drbrain@b2dd03c8-39d4-4d8f-98ff-823fe69b080e> | 2013-02-05 02:37:35 +0000 |
commit | 1633e543db2cc5c1f690840e5e7ea1f2a9af0b55 (patch) | |
tree | 2fce34d522a822171b91823dfcf9e0b8a2c9d283 /ChangeLog | |
parent | 6dfd56696fb49310149dc5ed7af52c8d7f43e536 (diff) |
* lib/rubygems/commands/push_command.rb: Fixed credential download for
`gem push --host`
* lib/rubygems/gemcutter_utilities.rb: ditto.
* test/rubygems/test_gem_commands_push_command.rb: Test for the above.
* test/rubygems/test_gem_gemcutter_utilities.rb: ditto.
* lib/rubygems/config_file.rb: Abort if the `gem push` credentials
file has insecure permissions.
* test/rubygems/test_gem_config_file.rb: Test for the above.
* lib/rubygems/ext/builder.rb: Do not look for Gemfile, Isolate, etc.
while building gem extensions.
* lib/rubygems/package.rb: Unset spec and files list if a gem's
signatures cannot be verified.
* test/rubygems/test_gem_package.rb: Test for the above.
* lib/rubygems/specification.rb: Reduce use of eval.
* lib/rubygems/test_case.rb: ditto.
* test/rubygems/test_gem_specification.rb: Test setting
specification_version for legacy gems. Dup Gem.ruby before
untainting in case it's frozen.
* lib/rubygems.rb: Reduce use of eval. Only read files when looking
for Gemfile, Isolate, etc.
* test/rubygems/test_gem.rb: Test for the above.
git-svn-id: svn+ssh://ci.ruby-lang.org/ruby/trunk@39055 b2dd03c8-39d4-4d8f-98ff-823fe69b080e
Diffstat (limited to 'ChangeLog')
-rw-r--r-- | ChangeLog | 30 |
1 files changed, 30 insertions, 0 deletions
@@ -1,3 +1,33 @@ +Tue Feb 5 11:35:35 2013 Eric Hodel <drbrain@segment7.net> + + * lib/rubygems/commands/push_command.rb: Fixed credential download for + `gem push --host` + * lib/rubygems/gemcutter_utilities.rb: ditto. + * test/rubygems/test_gem_commands_push_command.rb: Test for the above. + * test/rubygems/test_gem_gemcutter_utilities.rb: ditto. + + * lib/rubygems/config_file.rb: Abort if the `gem push` credentials + file has insecure permissions. + * test/rubygems/test_gem_config_file.rb: Test for the above. + + * lib/rubygems/ext/builder.rb: Do not look for Gemfile, Isolate, etc. + while building gem extensions. + + * lib/rubygems/package.rb: Unset spec and files list if a gem's + signatures cannot be verified. + * test/rubygems/test_gem_package.rb: Test for the above. + + * lib/rubygems/specification.rb: Reduce use of eval. + * lib/rubygems/test_case.rb: ditto. + + * test/rubygems/test_gem_specification.rb: Test setting + specification_version for legacy gems. Dup Gem.ruby before + untainting in case it's frozen. + + * lib/rubygems.rb: Reduce use of eval. Only read files when looking + for Gemfile, Isolate, etc. + * test/rubygems/test_gem.rb: Test for the above. + Tue Feb 5 10:15:00 2013 Zachary Scott <zachary@zacharyscott.net> * doc/security.rdoc: Wrap security guide at 80 columns |