Skip to content

Instantly share code, notes, and snippets.

@jasnow
Created June 21, 2023 11:57
Show Gist options
  • Save jasnow/7c99f4d9e8b838293ba407af373141af to your computer and use it in GitHub Desktop.
Save jasnow/7c99f4d9e8b838293ba407af373141af to your computer and use it in GitHub Desktop.
PR#641: Test suite
======================================================================
======================================================================
ONLY PATCHED_VERSIONS
======================================================================
FOUR
gems/actionpack/CVE-2014-7818.yml:patched_versions:
gems/actionpack/CVE-2014-7818.yml- - "~> 3.2.20"
gems/actionpack/CVE-2014-7818.yml- - "~> 4.0.11"
gems/actionpack/CVE-2014-7818.yml- - "~> 4.1.7"
gems/actionpack/CVE-2014-7818.yml- - ">= 4.2.0.beta3"
======================================================================
TWO ON TWO:
gems/actionpack/CVE-2015-7581.yml:patched_versions:
gems/actionpack/CVE-2015-7581.yml- - "~> 4.2.5, >= 4.2.5.1"
gems/actionpack/CVE-2015-7581.yml- - "~> 4.1.14, >= 4.1.14.1"
======================================================================
WRONG ORDER:
gems/actionpack/CVE-2016-0752.yml:patched_versions:
gems/actionpack/CVE-2016-0752.yml- - ">= 5.0.0.beta1.1"
gems/actionpack/CVE-2016-0752.yml- - "~> 4.2.5, >= 4.2.5.1"
gems/actionpack/CVE-2016-0752.yml- - "~> 4.1.14, >= 4.1.14.1"
gems/actionpack/CVE-2016-0752.yml- - "~> 3.2.22.1"
======================================================================
======================================================================
ONLY UNAFFECTED
??
======================================================================
======================================================================
START/ADD UNAFFECTED_VERSIONS
======================================================================
UNAFFECTED/TWO ON ONE, THEN THREE:
gems/actionpack/CVE-2012-3424.yml-unaffected_versions:
gems/actionpack/CVE-2012-3424.yml- ">= 2.3.5, <= 2.3.14"
gems/actionpack/CVE-2012-3424.yml-patched_versions:
gems/actionpack/CVE-2012-3424.yml- - "~> 3.0.16"
gems/actionpack/CVE-2012-3424.yml- - "~> 3.1.7"
gems/actionpack/CVE-2012-3424.yml- - ">= 3.2.7"
======================================================================
INTERESTING
gems/activestorage/CVE-2022-21831.yml-unaffected_versions:
gems/activestorage/CVE-2022-21831.yml- - "< 5.2.0"
gems/activestorage/CVE-2022-21831.yml:patched_versions:
gems/activestorage/CVE-2022-21831.yml- - "~> 5.2.6, >= 5.2.6.3"
gems/activestorage/CVE-2022-21831.yml- - "~> 6.0.4, >= 6.0.4.7"
gems/activestorage/CVE-2022-21831.yml- - "~> 6.1.4, >= 6.1.4.7"
gems/activestorage/CVE-2022-21831.yml- - ">= 7.0.2.3"
======================================================================
UNAFFECTED, TWO ON THREE
gems/actionpack/CVE-2016-2098.yml-unaffected_versions:
gems/actionpack/CVE-2016-2098.yml- - ">= 5.0.0.beta1"
gems/actionpack/CVE-2016-2098.yml:patched_versions:
gems/actionpack/CVE-2016-2098.yml- - "~> 3.2.22.2"
gems/actionpack/CVE-2016-2098.yml- - "~> 4.2.5, >= 4.2.5.2"
gems/actionpack/CVE-2016-2098.yml- - "~> 4.1.14, >= 4.1.14.2"
======================================================================
EOF
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment