Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Changelog is missing the details about the 1.2.2 release #378

Closed
opsidao opened this issue Sep 14, 2018 · 1 comment
Closed

Changelog is missing the details about the 1.2.2 release #378

opsidao opened this issue Sep 14, 2018 · 1 comment

Comments

@opsidao
Copy link

opsidao commented Sep 14, 2018

Title says it all, there are no details on the Changelog about what changes were included in the 1.2.2 release.

Thanks!

aspiers pushed a commit to aspiers/rubyzip that referenced this issue Jan 23, 2019
1.2.2 was already released in rubyzip#376, so unfortunately this is too late
for inclusion in that, but at least future releases will have it.

This is just a list of the titles of all non-merge commits since
1.2.1, so it won't be as concise or readable a summary as for previous
releases, but it's better than nothing, and anyone is welcome to
volunteer to condense it further.

Closes rubyzip#378.
@aspiers
Copy link
Contributor

aspiers commented Jan 23, 2019

Also observed in this comment.

This is particularly unfortunate because 1.2.2 contains two CVE security fixes, and downstream package-building processes rely on the changelog to keep track of when security vulnerabilities get fixed, e.g. https://build.opensuse.org/package/view_file/devel:languages:ruby:extensions/rubygem-rubyzip/rubygem-rubyzip.changes?expand=1

I've submitted #387 to retroactively add the changelog.

jdleesmiller added a commit that referenced this issue Mar 21, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants