ChangeLog for: 2025-10-08 22:57:33
d/llvm-21.1.3-x86_64-1.txz: Upgraded.
d/ruby-3.4.7-x86_64-1.txz: Upgraded.
This update fixes a security issue:
When using the + operator to combine URIs, sensitive information like
passwords from the original URI can be leaked, violating RFC3986 and making
applications vulnerable to credential exposure.
For more information, see:
https://www.ruby-lang.org/en/news/2025/10/07/uri-cve-2025-61594/
https://www.cve.org/CVERecord?id=CVE-2025-61594
(* Security fix *)
l/libclc-21.1.3-x86_64-1.txz: Upgraded.