[SEC][ANN] Rack 1.1.6, a modular Ruby webserver interface

336 views
Skip to first unread message

jftu...@gmail.com

unread,
Feb 7, 2013, 10:09:00 PM2/7/13
to ruby...@ruby-lang.org, rack-...@googlegroups.com, rack...@googlegroups.com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello,

Today we are proud to announce the release of Rack 1.1.6.

= Rack, a modular Ruby webserver interface

Rack provides a minimal, modular and adaptable interface for developing web applications in Ruby. By wrapping HTTP requests and responses in the simplest way possible, it unifies and distills the API for web servers, web frameworks, and software in between (the so-called middleware) into a single method call.
The exact details of this are described in the Rack specification, which all Rack applications should conform to.

== Changes

* February 7th, Thirty fifth public release 1.1.6, 1.2.8, 1.3.10
* Fix CVE-2013-0263, timing attack against Rack::Session::Cookie

== Where can I get it?

You can download Rack at
http://chneukirchen.org/releases/rack-1.1.6.tar.gz (upload pending at time of writing)
http://rubyforge.org/projects/rack

Alternatively, you can checkout from the development repository with:
git clone git://github.com/rack/rack.git
cd rack && git checkout rack-1.1 # for this release

Happy hacking and have a nice day,

James Tucker
on behalf of the Rack Core Team.

49b26eecd65ba189c01457944abfbb62560d52c3 rack-1.1.6.tar.gz
65c8066a94cac931813897dd4b3bc4ff4d6fb01a rack-1.1.6.gem
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (Darwin)

iQEcBAEBAgAGBQJRFGxLAAoJELphsezQxofDRrMIAJtYEWZp4FgYxNubVvOmGRRg
qT4nvOx3IPgEwdI2Q/bbgSz0oJ+8PSJh2WEwwh7o0GrPiCs0QVtMtxdSvJ6ojtGX
SKXVnX0GDRlmfsvB+u9IaMtZt6jS6F1sBUKyAImaD+TV2XsVkVUpGJbpiEFjK4oq
MK9RVniUk/yjmGuA/K0NpItB7IaTbBcRWFhtmuZZdp5Qn4MMWQT9s4io1oQG31L5
0dEhICJ3pSbJ1STjL2R4InVaMIA0sygE51beBEJyLxS1QGE6UNjAa+/TI8zKjqga
19JFUFlPqeE7GKose7TS7UUY/HBpFXdxxO2uMXeDiREEATiIbeUnQu1iEa/yBcA=
=y+yy
-----END PGP SIGNATURE-----
Reply all
Reply to author
Forward
0 new messages