Change log for puma package in Ubuntu

137 of 37 results
Published in noble-release
Deleted in noble-proposed (Reason: Moved to noble)
puma (6.4.2-4ubuntu4) noble; urgency=medium

  * No-change rebuild for CVE-2024-3094

 -- William Grant <email address hidden>  Mon, 01 Apr 2024 18:17:29 +1100

Available diffs

Superseded in noble-release
Deleted in noble-proposed (Reason: Moved to noble)
puma (6.4.2-4ubuntu3) noble; urgency=medium

  * No-change rebuild against libssl3t64

 -- Steve Langasek <email address hidden>  Mon, 04 Mar 2024 21:05:58 +0000
Deleted in noble-updates (Reason: superseded by release)
Superseded in noble-proposed
puma (6.4.2-4ubuntu2) noble; urgency=medium

  * No-change upload to remove support of ruby3.1.

 -- Lucas Kanashiro <email address hidden>  Tue, 20 Feb 2024 15:09:38 -0300

Available diffs

Superseded in noble-release
Deleted in noble-proposed (Reason: Moved to noble)
puma (6.4.2-4ubuntu1) noble; urgency=medium

  * d/p/0018-disable-test-failing-with-ruby3.2.patch: some tests are failing
    because they take too long, they do not seem real regressions.

 -- Lucas Kanashiro <email address hidden>  Wed, 07 Feb 2024 19:16:00 -0300

Available diffs

Superseded in noble-release
Deleted in noble-proposed (Reason: Moved to noble)
puma (5.6.5-4ubuntu3) noble; urgency=medium

  * SECURITY UPDATE: DoS via chunked transfer encoding body parsing
    - debian/patches/CVE-2024-21647.patch: limit the size of chunk
      extensions in lib/puma/client.rb, test/test_puma_server.rb.
    - CVE-2024-21647

 -- Marc Deslauriers <email address hidden>  Tue, 23 Jan 2024 12:50:14 -0500

Available diffs

Published in lunar-updates
Published in lunar-security
puma (5.6.5-3ubuntu1.2) lunar-security; urgency=medium

  * SECURITY UPDATE: DoS via chunked transfer encoding body parsing
    - debian/patches/CVE-2024-21647.patch: limit the size of chunk
      extensions in lib/puma/client.rb, test/test_puma_server.rb.
    - CVE-2024-21647

 -- Marc Deslauriers <email address hidden>  Tue, 23 Jan 2024 12:53:05 -0500
Published in mantic-updates
Published in mantic-security
puma (5.6.5-4ubuntu2.1) mantic-security; urgency=medium

  * SECURITY UPDATE: DoS via chunked transfer encoding body parsing
    - debian/patches/CVE-2024-21647.patch: limit the size of chunk
      extensions in lib/puma/client.rb, test/test_puma_server.rb.
    - CVE-2024-21647

 -- Marc Deslauriers <email address hidden>  Tue, 23 Jan 2024 12:50:14 -0500
Superseded in noble-release
Published in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
puma (5.6.5-4ubuntu2) mantic; urgency=medium

  * SECURITY UPDATE: HTTP request smuggling issues
    - debian/patches/CVE-2023-40175.patch: fix parsing in
      lib/puma/client.rb, test/test_puma_server.rb.
    - CVE-2023-40175

 -- Marc Deslauriers <email address hidden>  Fri, 22 Sep 2023 13:01:34 -0400

Available diffs

Superseded in lunar-updates
Superseded in lunar-security
puma (5.6.5-3ubuntu1.1) lunar-security; urgency=medium

  * SECURITY UPDATE: HTTP request smuggling issues
    - debian/patches/CVE-2023-40175.patch: fix parsing in
      lib/puma/client.rb, test/test_puma_server.rb.
    - CVE-2023-40175

 -- Marc Deslauriers <email address hidden>  Fri, 22 Sep 2023 13:03:47 -0400
Superseded in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
puma (5.6.5-4ubuntu1) mantic; urgency=medium

  * Merge with Debian unstable (LP: #2018102). Remaining changes:
    - Fix autopkgtest regressions on multiple architectures
      (LP #1916954, #1906307)
      + d/p/skip-tests-hanging-on-different-arches.patch: this is a
        workaround for now. The discussion with the Debian maintainer is
        ongoing.
    - d/p/skip-integration-tests-failing-in-ubuntu-autopkgtest-env.patch:
      some tests are failing only in autopkgtest and need further
      investigation.
    - d/ruby-tests.rake: skip flaky tests in Ubuntu.
      Some of them are executed in parallel and they try to start and stop
      the puma server multiple times which is causing a race condition.
  * Added:
    - d/ruby-tests.rake: skip test_chunked_keep_alive_two_back_to_back
      failing on s390x.

 -- Lucas Kanashiro <email address hidden>  Fri, 21 Jul 2023 16:27:57 -0300

Available diffs

Superseded in mantic-release
Published in lunar-release
Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
puma (5.6.5-3ubuntu1) lunar; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - Fix autopkgtest regressions on multiple architectures
      (LP #1916954, #1906307)
      + d/p/skip-tests-hanging-on-different-arches.patch: this is a
        workaround for now. The discussion with the Debian maintainer is
        ongoing.
    - d/p/skip-integration-tests-failing-in-ubuntu-autopkgtest-env.patch:
      some tests are failing only in autopkgtest and need further
      investigation.
  * Dropped:
    - d/p/fix-ssl-test.patch: Fix FTBFS against OpenSSL 3.
      [Applied by upstream in version 5.6.0]
  * Added:
    - d/ruby-tests.rake: skip flaky tests in Ubuntu.
      Some of them are executed in parallel and they try to start and stop
      the puma server multiple times which is causing a race condition.

 -- Lucas Kanashiro <email address hidden>  Fri, 17 Feb 2023 09:45:23 -0300
Superseded in lunar-proposed
puma (5.5.2-2ubuntu4) lunar; urgency=medium

  * No-change upload to remove support for ruby3.0.

 -- Lucas Kanashiro <email address hidden>  Fri, 03 Feb 2023 12:43:47 -0300

Available diffs

Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
puma (5.5.2-2ubuntu3) lunar; urgency=medium

  * No-change upload to add support for ruby3.1.

 -- Lucas Kanashiro <email address hidden>  Tue, 24 Jan 2023 12:11:39 -0300

Available diffs

Superseded in lunar-release
Obsolete in kinetic-release
Published in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
puma (5.5.2-2ubuntu2) jammy; urgency=medium

  * No-change upload due to ruby3.0 transition, remove ruby2.7 support.

 -- Lucas Kanashiro <email address hidden>  Fri, 03 Dec 2021 18:17:16 -0300
Superseded in jammy-proposed
puma (5.5.2-2ubuntu1) jammy; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - Fix autopkgtest regressions on multiple architectures
      (LP #1916954, #1906307)
      + d/p/skip-tests-hanging-on-different-arches.patch: this is a
        workaround for now. The discussion with the Debian maintainer is
        ongoing.
  * Dropped:
    - Disable a test that fails on Ubuntu builder farm, but not locally
      (LP #1866881).
    - d/t/control: do not run SSL tests with autopkgtest. Due to OpenSSL
      differences between Ubuntu and Debian some tests are failing with
      autopkgtest only.
    - d/t/control: removed. The test defined runs the same command than the
      one defined by autodep8. In Debian this test is manually defined to run
      OpenSSL related tests, but in Ubuntu we disabled them.
    - d/t/autopkgtest-pkg-ruby.conf: add restrictions to the autodep8 test
      definition.
    - d/ruby-tests.rake:
      + Set CI environment variable to 300. This will make tests time out
        after 5 minutes and not hang there forever, which can helps us identify
        problems more easily.
      + Do not run test/test_cli.rb tests on arm64, different test cases from
        this test file have been failing for a while. Some investigation with
        upstream maintainers is ongoing.
  * Added:
    - d/p/fix-ssl-test.patch: Fix FTBFS against OpenSSL 3.
    - d/p/skip-integration-tests-failing-in-ubuntu-autopkgtest-env.patch:
      some tests are failing only in autopkgtest and need further
      investigation.

 -- Lucas Kanashiro <email address hidden>  Wed, 24 Nov 2021 11:30:05 -0300

Available diffs

Superseded in jammy-release
Obsolete in impish-release
Obsolete in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
puma (4.3.6-1ubuntu4) hirsute; urgency=medium

  * Another attempt to fix autopkgtest regressions (LP: #1916954, #1906307)
    - d/p/skip-test-hanging-on-s390x.patch: renamed to
      skip-test-hanging-on-different-arches.patch. Also skipped another test
      which is timing out on s390x, arm64 and ppc64el so far.
    - d/ruby-tests.rake:
      + Set CI environment variable to 300. This will make tests time out
        after 5 minutes and not hang there forever, which can helps us identify
        problems more easily.
      + Do not run test/test_cli.rb tests on arm64, different test cases from
        this test file have been failing for a while. Some investigation with
        upstream maintainers is ongoing.

 -- Lucas Kanashiro <email address hidden>  Mon, 01 Mar 2021 10:53:51 -0300
Superseded in hirsute-proposed
puma (4.3.6-1ubuntu3) hirsute; urgency=medium

  * Fix autopkgtest regressions on s390x and arm64 (LP: #1916954)
    - d/p/skip-test-hanging-on-s390x.patch: this is a workaround for now. The
      discussion with the Debian maintainer is ongoing.
    - d/t/autopkgtest-pkg-ruby.conf: add restrictions to the autodep8 test
      definition.
    - d/t/control: removed. The test defined runs the same command than the
      one defined by autodep8. In Debian this test is manually defined to run
      OpenSSL related tests, but in Ubuntu we disabled them.

 -- Lucas Kanashiro <email address hidden>  Thu, 25 Feb 2021 17:57:53 -0300

Available diffs

Superseded in hirsute-proposed
puma (4.3.6-1ubuntu2) hirsute; urgency=medium

  * d/t/control: do not run SSL tests with autopkgtest. Due to OpenSSL
    differences between Ubuntu and Debian some tests are failing with
    autopkgtest only.

 -- Lucas Kanashiro <email address hidden>  Fri, 19 Feb 2021 16:52:12 -0300

Available diffs

Superseded in hirsute-proposed
puma (4.3.6-1ubuntu1) hirsute; urgency=medium

  * Merge from Debian unstable.  Remaining changes:
    - Disable a test that fails on Ubuntu builder farm, but not locally
      (LP: #1866881).

Superseded in hirsute-proposed
puma (4.3.6-1) unstable; urgency=medium

  * Team upload.
  * New upstream version.
    - Fixes CVE-2020-11076 and CVE-2020-11077 (closes: #972102).
  * d/copyright: Minor update.
  * d/puma.lintian-overrides: Add package override.
  * d/ruby-tests.rake: Add logic to run SSL test.
  * d/patches/*.patch: Add missing headers and refresh.
  * d/source/lintian-overrides: Add source override.
  * d/tests/control: Set environment variable to run the SSL tests separately
    (similar to the solution used in the jekyll package).
  * d/tests/test-puma-server-ssl*: Removed.

 -- Daniel Leidert <email address hidden>  Thu, 15 Oct 2020 20:57:29 +0200
Superseded in hirsute-proposed
Deleted in groovy-proposed (Reason: From groovy-as-devel-series, now present in hirsute, not ...)
puma (4.3.3-3ubuntu1) groovy; urgency=low

  * Merge from Debian unstable.  Remaining changes:
    - Disable a test that fails on Ubuntu builder farm, but not locally
      (LP: #1866881).

Superseded in groovy-proposed
puma (4.3.3-3) unstable; urgency=medium

  * Include patch from gitlab to improve performance

 -- Pirate Praveen <email address hidden>  Tue, 18 Aug 2020 00:15:20 +0530
Superseded in hirsute-release
Obsolete in groovy-release
Published in focal-release
Deleted in focal-proposed (Reason: moved to Release)
puma (3.12.4-1ubuntu2) focal; urgency=medium

  - Merge from Debian unstable.  Remaining changes:
    - Disable a test that fails on Ubuntu builder farm, but not locally
      (LP: #1866881).

 -- Lucas Kanashiro <email address hidden>  Tue, 10 Mar 2020 15:46:46 -0300
Superseded in focal-proposed
puma (3.12.4-1ubuntu1) focal; urgency=medium

  * Disable a test that fails on Ubuntu builder farm, but not locally
    (LP: #1866881).

 -- Lucas Kanashiro <email address hidden>  Tue, 10 Mar 2020 15:46:46 -0300
Superseded in focal-proposed
puma (3.12.4-1) unstable; urgency=medium

  * Team upload.
  * New upstream release.
    - Fixes CVE-2020-5247 (closes: #952766).
    - Fixes CVE-2020-5249 (closes: #953122).
  * d/control (Section): Changed to web.
    (Homepage): Use secure URL.
    (Depends): Add ${ruby:Depends}.
  * d/copyright (Source): Use secure URL.
  * d/ruby-tests.rake: Disable test/test_puma_server_ssl.rb for the moment.
    These tests fail due to openssl being configured to use SECLEVEL2
    (https://github.com/puma/puma/issues/2147).
  * d/rules: Add override to install upstream changelog.
  * d/watch: Rename downloaded tarball to include package name.
  * d/patches/0008-fix-ssl-tests.patch: Remove patch. Applied upstream.
  * d/patches/CVE-2019-16770.patch: Ditto.
  * d/patches/*.patch: Refresh patches.
  * d/patches/series: Adjust.

 -- Daniel Leidert <email address hidden>  Wed, 04 Mar 2020 23:09:16 +0100
Superseded in focal-proposed
puma (3.12.0-4ubuntu2) focal; urgency=medium

  [ Rafael David Tinoco ]
  * Sponsoring ruby2.7 transitions

  [ Lucas Kanashiro ]
  * No-change rebuild for ruby2.7

 -- Rafael David Tinoco <email address hidden>  Wed, 26 Feb 2020 17:10:54 +0000

Available diffs

Superseded in focal-release
Deleted in focal-proposed (Reason: moved to Release)
puma (3.12.0-4ubuntu1) focal; urgency=low

  * Merge from Debian unstable.  Remaining changes:
    - Disable a test that fails on Ubuntu builder farm, but not locally

Superseded in focal-proposed
puma (3.12.0-4) unstable; urgency=medium

  * Team upload.
  * d/control (Rules-Requires-Root): Set to binary-targets.
  * d/patches/0011-disable-minitest-extensions.patch: Add patch.
    - Disable unavailable minitest retry extension.
  * d/patches/CVE-2019-16770.patch: Add patch.
    - Backport fix for CVE-2019-16770 from upstream (closes: #946312).
  * d/patches/series: Add patch.

 -- Daniel Leidert <email address hidden>  Thu, 06 Feb 2020 12:54:59 +0100
Superseded in focal-release
Obsolete in eoan-release
Obsolete in disco-release
Deleted in disco-proposed (Reason: moved to release)
puma (3.12.0-2ubuntu1) disco; urgency=medium

  * Disable a test that fails on Ubuntu builder farm, but not locally

 -- Gianfranco Costamagna <email address hidden>  Sat, 13 Apr 2019 16:25:42 +0200
Superseded in disco-proposed
puma (3.12.0-2) unstable; urgency=medium

  * Disable tests failing in single cpu (Closes: #921931)

 -- Pirate Praveen <email address hidden>  Sun, 10 Feb 2019 18:56:47 +0530

Available diffs

Superseded in disco-proposed
puma (3.12.0-1) unstable; urgency=medium

  [ Balint Reczey ]
  * New upstream version 3.12.0
  * Refresh patches

  [ Pirate Praveen ]
  * Fix OpenSSL 1.1.1 test failures with upstream patch (Closes: #900156)
  * Bump Standards-Version to 4.3.0 (no changes needed)
  * Add myself to uploaders

 -- Pirate Praveen <email address hidden>  Sun, 10 Feb 2019 10:56:59 +0530

Available diffs

Superseded in disco-proposed
Deleted in cosmic-proposed (Reason: Moved to disco-proposed)
Deleted in bionic-proposed (Reason: Moved to cosmic-proposed.)
puma (3.11.3-1) unstable; urgency=medium

  * Team upload
  * Remove myself from Uploaders:
  * New upstream version 3.11.3
  * Build against libssl-dev instead of libssl1.0-dev (Closes: #859542)
  * Refresh packaging files with `dh-make-ruby -wo .`
    * Bump debhelper compat to 11
    * Change Vcs-* to point to salsa.debian.org
    * Use standard debian/ruby-tests.rake
      * drop build-dependency on ruby-hoe
  * Refresh patches
  * New patches:
    - 0006-test-helper.rb-drop-bundler-usage.patch
    - 0007-test-test_cli.rb-disable-test-that-fails-randomly.patch
  * Replace 0001-test_puma_server_ssl-update-for-newer-versions-of-Op.patch
    with 0001-test_puma_server_ssl-disable-test-that-takes-too-lon.patch


 -- Antonio Terceiro <email address hidden>  Wed, 28 Mar 2018 18:53:22 -0300
Superseded in bionic-proposed
puma (3.6.0-1ubuntu3) bionic; urgency=medium

  * debian/patches/ruby2.5-rubygems.patch: fix rubygems invocations for
    ruby2.5.  Closes: #890751.
  * debian/patches/0001-Make-get_dh1024-compatible-with-OpenSSL-
    v1.1.0.patch: cherry-pick upstream OpenSSL 1.1 support.
  * Switch to openssl 1.1.  Closes: #859542.

 -- Steve Langasek <email address hidden>  Thu, 22 Mar 2018 22:57:11 -0700

Available diffs

Superseded in bionic-proposed
puma (3.6.0-1ubuntu2) bionic; urgency=medium

  * No-change rebuild for ruby2.5 update.

 -- Matthias Klose <email address hidden>  Thu, 01 Feb 2018 19:01:57 +0000

Available diffs

Deleted in bionic-release (Reason: remove puma, ftbfs, no rdeps, see Debian #859542)
Obsolete in artful-release
Deleted in artful-proposed (Reason: moved to release)
puma (3.6.0-1ubuntu1) artful; urgency=medium

  * Disable openssl patch, Ubuntu has an older 1.0 one.
    (openssl is updated frequently in Ubuntu, so probably
     in some days this will be re-enabled to make build
     work again)

 -- Gianfranco Costamagna <email address hidden>  Thu, 14 Sep 2017 08:43:56 +0200

Available diffs

Superseded in artful-proposed
puma (3.6.0-1build1) artful; urgency=medium

  * Rebuild against rebuild with default fPIC.

 -- Gianfranco Costamagna <email address hidden>  Wed, 13 Sep 2017 23:28:35 +0200
Superseded in artful-proposed
Deleted in zesty-proposed (Reason: Moved to artful-proposed)
puma (3.6.0-1) unstable; urgency=medium

  * Initial release (Closes: #720336)

 -- Antonio Terceiro <email address hidden>  Thu, 10 Nov 2016 16:47:06 -0200
137 of 37 results