Bumps sqlite3 from 1.4.4 to 1.5.2.
Sourced from sqlite3's releases.
1.5.2 / 2022-10-01
Packaging
This version correctly vendors the tarball for sqlite v3.39.4 in the vanilla "ruby" platform gem package, so that users will not require network access at installation.
v1.5.0 and v1.5.1 mistakenly packaged the tarball for sqlite v3.38.5 in the vanilla "ruby" platform gem, resulting in downloading the intended tarball over the network at installation time (or, if the network was not available, failure to install). Note that the precompiled native gems were not affected by this issue. #352
sha256 checksums:
94626203958f9abf5e7d28b0337af6d00fb10cabfc3d65e70eb95b878080a812 sqlite3-1.5.2-aarch64-linux.gem ada7a8ec6b13165ebb56dfc8df9f896d2b41c78e92e2ba0b5bca969b6c376e1d sqlite3-1.5.2-arm-linux.gem 472d837f79273bbfb7d626c787a0f3e9f0bd0a3855ed5bfee1ef70bee8808ced sqlite3-1.5.2-arm64-darwin.gem 750bf833b72550244c672cb3467b68b5c89b3e8be2c893a2749cdbc3841ee898 sqlite3-1.5.2-x64-mingw-ucrt.gem e750e17784cd76b59f5dd9a3366f9b0d76626872700f0f59194f2f4c439cbb01 sqlite3-1.5.2-x64-mingw32.gem caf0a7717375addb46157b1090ad02316a9491531d69e2389f56058ce784518e sqlite3-1.5.2-x86-linux.gem caff6c75b13874ce828514a95aa437744e042390fdeb0f73decde16235d3fe2f sqlite3-1.5.2-x86_64-darwin.gem 245f2ef5dd9c6a2b3df41b4af41fa659c8917d0cc231d4c1b03b4d199ae412e7 sqlite3-1.5.2-x86_64-linux.gem 9b3153b5703b4619534135c16ff7c4e8ba1adbd8548ff61bb4a002dd632bcd5e sqlite3-1.5.2.gem
1.5.1 / 2022-09-29
Dependencies
- Vendored sqlite is updated to v3.39.4.
Security
The vendored version of sqlite, v3.39.4, should be considered to be a security release. From the release notes:
Version 3.39.4 is a minimal patch against the prior release that addresses issues found since the prior release. In particular, a potential vulnerability in the FTS3 extension has been fixed, so this should be considered a security update.
In order to exploit the vulnerability, an attacker must have full SQL access and must be able to construct a corrupt database with over 2GB of FTS3 content. The problem arises from a 32-bit signed integer overflow.
For more information please see GHSA-mgvv-5mxp-xq67.
sha256:
... (truncated)
Sourced from sqlite3's changelog.
1.5.2 / 2022-10-01
Packaging
This version correctly vendors the tarball for sqlite v3.39.4 in the vanilla "ruby" platform gem package, so that users will not require network access at installation.
v1.5.0 and v1.5.1 mistakenly packaged the tarball for sqlite v3.38.5 in the vanilla "ruby" platform gem, resulting in downloading the intended tarball over the network at installation time (or, if the network was not available, failure to install). Note that the precompiled native gems were not affected by this issue. #352
1.5.1 / 2022-09-29
Dependencies
- Vendored sqlite is updated to v3.39.4.
Security
The vendored version of sqlite, v3.39.4, should be considered to be a security release. From the release notes:
Version 3.39.4 is a minimal patch against the prior release that addresses issues found since the prior release. In particular, a potential vulnerability in the FTS3 extension has been fixed, so this should be considered a security update.
In order to exploit the vulnerability, an attacker must have full SQL access and must be able to construct a corrupt database with over 2GB of FTS3 content. The problem arises from a 32-bit signed integer overflow.
For more information please see GHSA-mgvv-5mxp-xq67.
1.5.0 / 2022-09-08
Packaging
Faster, more reliable installation
Native (precompiled) gems are available for Ruby 2.6, 2.7, 3.0, and 3.1 on all these platforms:
aarch64-linux
arm-linux
arm64-darwin
x64-mingw32
andx64-mingw-ucrt
x86-linux
x86_64-darwin
x86_64-linux
If you are using one of these Ruby versions on one of these platforms, the native gem is the recommended way to install sqlite3-ruby.
See the README for more information.
... (truncated)
5c443e2
version bump to v1.5.25ab9cd8
Merge pull request #352 from sparklemotion/351-fix-tarball-packagingd37f248
fix: native.rake and test-gem-file-contents use dependencies.ymldf549ed
refactor: extract mini_portile recipe config to dependencies.yml8ab3ecc
version bump to 1.5.1b026da1
Merge pull request #349 from sparklemotion/flavorjones-update-sqlite-3.39.48ebb39d
dep: update packaged sqlite3 to v3.39.44bf6f66
doc: clarify how to avoid installing a native gem31ea008
version bump to 1.5.0 (final)23721a7
rb_gc_register_address() must be called after the variable was assigned (#345)Dependabot (ee045223) at 05 Oct 15:04
Bump sqlite3 from 1.4.4 to 1.5.2
Dependabot (a9d02045) at 05 Oct 15:04
Dependabot (aef37486) at 05 Oct 15:04
Bumps sqlite3 from 1.4.4 to 1.5.0.
Sourced from sqlite3's releases.
1.5.0 / 2022-09-08
Packaging
Faster, more reliable installation
Native (precompiled) gems are available for Ruby 2.6, 2.7, 3.0, and 3.1 on all these platforms:
aarch64-linux
arm-linux
arm64-darwin
x64-mingw32
andx64-mingw-ucrt
x86-linux
x86_64-darwin
x86_64-linux
If you are using one of these Ruby versions on one of these platforms, the native gem is the recommended way to install sqlite3-ruby.
See the README for more information.
More consistent developer experience
Both the native (precompiled) gems and the vanilla "ruby platform" (source) gem include sqlite v3.39.3 by default.
Defaulting to a consistent version of sqlite across all systems means that your development environment behaves exactly like your production environment, and you have access to the latest and greatest features of sqlite.
You can opt-out of the packaged version of sqlite (and use your system-installed library as in versions < 1.5.0). See the README for more information.
Release notes for this version of sqlite
Rubies and Platforms
- TruffleRuby is supported.
- Apple Silicon is supported (M1, arm64-darwin).
- vcpkg system libraries supported. #332 (Thanks, @MSP-Greg!)
Added
SQLite3::SQLITE_LOADED_VERSION
contains the version string of the sqlite3 library that is dynamically loaded (compare toSQLite3::SQLITE_VERSION
which is the version at compile-time).Fixed
SQLite3::Database#load_extensions
now raises aTypeError
unless a String is passed as the file path. Previously it was possible to pass a non-string and cause a segfault. #339
... (truncated)
Sourced from sqlite3's changelog.
1.5.0 / 2022-09-08
Packaging
Faster, more reliable installation
Native (precompiled) gems are available for Ruby 2.6, 2.7, 3.0, and 3.1 on all these platforms:
aarch64-linux
arm-linux
arm64-darwin
x64-mingw32
andx64-mingw-ucrt
x86-linux
x86_64-darwin
x86_64-linux
If you are using one of these Ruby versions on one of these platforms, the native gem is the recommended way to install sqlite3-ruby.
See the README for more information.
More consistent developer experience
Both the native (precompiled) gems and the vanilla "ruby platform" (source) gem include sqlite v3.39.3 by default.
Defaulting to a consistent version of sqlite across all systems means that your development environment behaves exactly like your production environment, and you have access to the latest and greatest features of sqlite.
You can opt-out of the packaged version of sqlite (and use your system-installed library as in versions < 1.5.0). See the README for more information.
Release notes for this version of sqlite
Rubies and Platforms
- TruffleRuby is supported.
- Apple Silicon is supported (M1, arm64-darwin).
- vcpkg system libraries supported. #332 (Thanks, @MSP-Greg!)
Added
SQLite3::SQLITE_LOADED_VERSION
contains the version string of the sqlite3 library that is dynamically loaded (compare toSQLite3::SQLITE_VERSION
which is the version at compile-time).Fixed
SQLite3::Database#load_extensions
now raises aTypeError
unless a String is passed as the file path. Previously it was possible to pass a non-string and cause a segfault. #339
31ea008
version bump to 1.5.0 (final)23721a7
rb_gc_register_address() must be called after the variable was assigned (#345)6607e64
Merge pull request #342 from sparklemotion/flavorjones-update-sqlite-3.39.310f4308
dep: update packaged sqlite3 to v3.39.3bf63f77
doc: fix sqlite3 docs link in CHANGELOG2544e58
version bump to v1.5.0.rc2 (release candidate)1cfa1c1
Merge pull request #341 from sparklemotion/flavorjones-compiler-optimizationd77cf57
perf: use -O2 compiler optimizationse27f9b0
Merge pull request #340 from sparklemotion/339-load-extension-segfault31785dd
fix: Database#load_extension check argument typeBumps bootstrap from 4.1.0 to 5.2.1.
Sourced from bootstrap's releases.
v5.0.0
No release notes provided.
v4.2.1
- Bootstrap rubygem now depends on SassC instead of Sass.
Sourced from bootstrap's changelog.
Changelog
The changelog is tracked here but also in the Releases section of the GitHub project. The changelog only includes changes specific to the RubyGem.
The Bootstrap framework changes can be found in the Releases section of twbs/bootstrap. Release announcement posts on the official Bootstrap blog contain summaries of the most noteworthy changes made in each release of Bootstrap.
4.2.1
- Bootstrap rubygem now depends on SassC instead of Sass.
4.0.0.beta2.1
Fixes an extraneous
sourceMappingURL
inbootstrap.js
. #1244.0.0.beta2
Compass is no longer supported. Minimum required Sass version is now v3.5.2. #122
4.0.0.alpha3.1
This release corresponds to the upstream Bootstrap 4 Alpha 3.
6ecce3b
Update to v5.2.1c548a9a
tasks/updater/js.rb: Fix popper reference49a70a4
Add Importmaps section to README003c627
Update to v5.2.0badd3ae
Prepare for v5.2.09892831
Update to v5.1.3dcf74d7
Update to v5.1.29b7f652
Update to v5.1.18180cf0
Update to v5.1.04c1cc4a
Update JS updater for v5.1.0Dependabot (a125cd30) at 21 Sep 15:03
Bump bootstrap from 4.1.0 to 5.2.1
Dependabot (a9d02045) at 21 Sep 15:03
Dependabot (09298b5d) at 21 Sep 15:03
Bumps bootstrap from 4.1.0 to 5.2.0.
Sourced from bootstrap's releases.
v5.0.0
No release notes provided.
v4.2.1
- Bootstrap rubygem now depends on SassC instead of Sass.
Sourced from bootstrap's changelog.
Changelog
The changelog is tracked here but also in the Releases section of the GitHub project. The changelog only includes changes specific to the RubyGem.
The Bootstrap framework changes can be found in the Releases section of twbs/bootstrap. Release announcement posts on the official Bootstrap blog contain summaries of the most noteworthy changes made in each release of Bootstrap.
4.2.1
- Bootstrap rubygem now depends on SassC instead of Sass.
4.0.0.beta2.1
Fixes an extraneous
sourceMappingURL
inbootstrap.js
. #1244.0.0.beta2
Compass is no longer supported. Minimum required Sass version is now v3.5.2. #122
4.0.0.alpha3.1
This release corresponds to the upstream Bootstrap 4 Alpha 3.
003c627
Update to v5.2.0badd3ae
Prepare for v5.2.09892831
Update to v5.1.3dcf74d7
Update to v5.1.29b7f652
Update to v5.1.18180cf0
Update to v5.1.04c1cc4a
Update JS updater for v5.1.0931853c
Update dependencies7b25c69
Update to v5.0.2c702c4d
Actualize bootstrap version in READMEBumps sqlite3 from 1.4.4 to 1.5.0.
Sourced from sqlite3's releases.
1.5.0 / 2022-09-08
Packaging
Faster, more reliable installation
Native (precompiled) gems are available for Ruby 2.6, 2.7, 3.0, and 3.1 on all these platforms:
aarch64-linux
arm-linux
arm64-darwin
x64-mingw32
andx64-mingw-ucrt
x86-linux
x86_64-darwin
x86_64-linux
If you are using one of these Ruby versions on one of these platforms, the native gem is the recommended way to install sqlite3-ruby.
See the README for more information.
More consistent developer experience
Both the native (precompiled) gems and the vanilla "ruby platform" (source) gem include sqlite v3.39.3 by default.
Defaulting to a consistent version of sqlite across all systems means that your development environment behaves exactly like your production environment, and you have access to the latest and greatest features of sqlite.
You can opt-out of the packaged version of sqlite (and use your system-installed library as in versions < 1.5.0). See the README for more information.
Release notes for this version of sqlite
Rubies and Platforms
- TruffleRuby is supported.
- Apple Silicon is supported (M1, arm64-darwin).
- vcpkg system libraries supported. #332 (Thanks, @MSP-Greg!)
Added
SQLite3::SQLITE_LOADED_VERSION
contains the version string of the sqlite3 library that is dynamically loaded (compare toSQLite3::SQLITE_VERSION
which is the version at compile-time).Fixed
SQLite3::Database#load_extensions
now raises aTypeError
unless a String is passed as the file path. Previously it was possible to pass a non-string and cause a segfault. #339
... (truncated)
Sourced from sqlite3's changelog.
1.5.0 / 2022-09-08
Packaging
Faster, more reliable installation
Native (precompiled) gems are available for Ruby 2.6, 2.7, 3.0, and 3.1 on all these platforms:
aarch64-linux
arm-linux
arm64-darwin
x64-mingw32
andx64-mingw-ucrt
x86-linux
x86_64-darwin
x86_64-linux
If you are using one of these Ruby versions on one of these platforms, the native gem is the recommended way to install sqlite3-ruby.
See the README for more information.
More consistent developer experience
Both the native (precompiled) gems and the vanilla "ruby platform" (source) gem include sqlite v3.39.3 by default.
Defaulting to a consistent version of sqlite across all systems means that your development environment behaves exactly like your production environment, and you have access to the latest and greatest features of sqlite.
You can opt-out of the packaged version of sqlite (and use your system-installed library as in versions < 1.5.0). See the README for more information.
Release notes for this version of sqlite
Rubies and Platforms
- TruffleRuby is supported.
- Apple Silicon is supported (M1, arm64-darwin).
- vcpkg system libraries supported. #332 (Thanks, @MSP-Greg!)
Added
SQLite3::SQLITE_LOADED_VERSION
contains the version string of the sqlite3 library that is dynamically loaded (compare toSQLite3::SQLITE_VERSION
which is the version at compile-time).Fixed
SQLite3::Database#load_extensions
now raises aTypeError
unless a String is passed as the file path. Previously it was possible to pass a non-string and cause a segfault. #339
31ea008
version bump to 1.5.0 (final)23721a7
rb_gc_register_address() must be called after the variable was assigned (#345)6607e64
Merge pull request #342 from sparklemotion/flavorjones-update-sqlite-3.39.310f4308
dep: update packaged sqlite3 to v3.39.3bf63f77
doc: fix sqlite3 docs link in CHANGELOG2544e58
version bump to v1.5.0.rc2 (release candidate)1cfa1c1
Merge pull request #341 from sparklemotion/flavorjones-compiler-optimizationd77cf57
perf: use -O2 compiler optimizationse27f9b0
Merge pull request #340 from sparklemotion/339-load-extension-segfault31785dd
fix: Database#load_extension check argument typeDependabot (aef37486) at 14 Sep 15:04
Bump sqlite3 from 1.4.4 to 1.5.0
Dependabot (a9d02045) at 14 Sep 15:04
Bumps puma from 5.6.4 to 5.6.5.
Sourced from puma's releases.
5.6.5 / 2022-08-23
- Bugfixes
- NullIO#closed should return false (#2883)
- Puma::ControlCLI - allow refork command to be sent as a request (#2868, #2866)
- [jruby] Fix TLS verification hang (#2890, #2729)
- extconf.rb - don't use pkg_config('openssl') if '--with-openssl-dir' is used (#2885, #2839)
- MiniSSL - detect SSL_CTX_set_dh_auto (#2864, #2863)
- Fix rack.after_reply exceptions breaking connections (#2861, #2856)
- Escape SSL cert and filenames (#2855)
- Fail hard if SSL certs or keys are invalid (#2848)
- Fail hard if SSL certs or keys cannot be read by user (#2847)
- Fix build with Opaque DH in LibreSSL 3.5. (#2838)
- Pre-existing socket file removed when TERM is issued after USR2 (if puma is running in cluster mode) (#2817)
- Fix Puma::StateFile#load incompatibility (#2810)
Sourced from puma's changelog.
5.6.5 / 2022-08-23
Feature
Bugfixes
- NullIO#closed should return false (#2883)
- [jruby] Fix TLS verification hang (#2890, #2729)
- extconf.rb - don't use pkg_config('openssl') if '--with-openssl-dir' is used (#2885, #2839)
- MiniSSL - detect SSL_CTX_set_dh_auto (#2864, #2863)
- Fix rack.after_reply exceptions breaking connections (#2861, #2856)
- Escape SSL cert and filenames (#2855)
- Fail hard if SSL certs or keys are invalid (#2848)
- Fail hard if SSL certs or keys cannot be read by user (#2847)
- Fix build with Opaque DH in LibreSSL 3.5. (#2838)
- Pre-existing socket file removed when TERM is issued after USR2 (if puma is running in cluster mode) (#2817)
- Fix Puma::StateFile#load incompatibility (#2810)
3bace01
5.6.53ce6668
5.6.5 release note0147ac6
Upstream master build changes (#2913)0970c91
test_integration_ssl.rb - fix LogWriter reference790424c
Add log_writer instance variable to server.rb6454710
Puma::ControlCLI - allow refork command to be sent as a request (#2868)470df09
[fix] TLS verification hang on JRuby (#2890)a1489dd
extconf.rb - don't use pkg_config('openssl') if '--with-openssl-dir' is used ...6d22d50
MiniSSL - detect SSL_CTX_set_dh_auto (#2864)e692887
Fix rack.after_reply exceptions breaking connections (#2861)Dependabot (5a828479) at 31 Aug 15:04
Bump puma from 5.6.4 to 5.6.5
Dependabot (a9d02045) at 31 Aug 15:04
Bumps pg from 1.4.1 to 1.4.3.
Sourced from pg's changelog.
== v1.4.3 [2022-08-09] Lars Kanis lars@greiz-reinsdorf.de
- Avoid memory bloat possible in put_copy_data in pg-1.4.0 to 1.4.2. #473
- Use Encoding::BINARY for JOHAB, removing some useless code. #472
== v1.4.2 [2022-07-27] Lars Kanis lars@greiz-reinsdorf.de
Bugfixes:
- Properly handle empty host parameter when connecting. #471
- Update Windows fat binary gem to OpenSSL-1.1.1q.
441cb1e
Update History for pg-1.4.3fff03df
Bump VERSION to 1.4.39929ac9
Merge pull request #474 from larskanis/put_copy_data-flushing54e22bc
Do a blocking flush every 100 calls to put_copy_data28b73d2
Merge pull request #472 from eregon/treat_johab_encoding_as_binaryc9284ff
Use Encoding::BINARY for JOHABfc939f5
Usage of environment variables is fixed in Postgres-12d41fc0c
Update Windows fat binary gem to OpenSSL-1.1.1q757226c
Bump VERSION to 1.4.2 and add release notesce85904
Make SSL connections independent from files in ~/.postgresqlDependabot (58747428) at 31 Aug 15:04
Bump pg from 1.4.1 to 1.4.3
Dependabot (a9d02045) at 31 Aug 15:04
Bumps bootstrap from 4.1.0 to 5.2.0.
Sourced from bootstrap's releases.
v5.0.0
No release notes provided.
v4.2.1
- Bootstrap rubygem now depends on SassC instead of Sass.
Sourced from bootstrap's changelog.
Changelog
The changelog is tracked here but also in the Releases section of the GitHub project. The changelog only includes changes specific to the RubyGem.
The Bootstrap framework changes can be found in the Releases section of twbs/bootstrap. Release announcement posts on the official Bootstrap blog contain summaries of the most noteworthy changes made in each release of Bootstrap.
4.2.1
- Bootstrap rubygem now depends on SassC instead of Sass.
4.0.0.beta2.1
Fixes an extraneous
sourceMappingURL
inbootstrap.js
. #1244.0.0.beta2
Compass is no longer supported. Minimum required Sass version is now v3.5.2. #122
4.0.0.alpha3.1
This release corresponds to the upstream Bootstrap 4 Alpha 3.
003c627
Update to v5.2.0badd3ae
Prepare for v5.2.09892831
Update to v5.1.3dcf74d7
Update to v5.1.29b7f652
Update to v5.1.18180cf0
Update to v5.1.04c1cc4a
Update JS updater for v5.1.0931853c
Update dependencies7b25c69
Update to v5.0.2c702c4d
Actualize bootstrap version in README