Debian Package Tracker
Register | Log in
Subscribe

ruby-sinatra

Ruby web-development dressed in a DSL

Choose email to subscribe with

general
  • source: ruby-sinatra (main)
  • version: 4.2.1-5
  • maintainer: Debian Ruby Team (archive) (DMD)
  • uploaders: Youhei SASAKI [DMD] [DM] – Pirate Praveen [DMD] – Lucas Kanashiro [DMD]
  • arch: all
  • std-ver: 4.7.4
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • o-o-stable: 2.0.8.1-2
  • o-o-sec: 2.0.8.1-2+deb11u1
  • oldstable: 3.0.5-3+deb12u1
  • stable: 4.1.1-5
  • testing: 4.2.1-5
  • unstable: 4.2.1-5
versioned links
  • 2.0.8.1-2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.0.8.1-2+deb11u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 3.0.5-3+deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 4.1.1-5: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 4.2.1-5: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • ruby-rack-protection
  • ruby-sinatra
  • ruby-sinatra-contrib
action needed
debian/patches: 1 patch with invalid metadata high

Among the 6 debian patches available in version 4.2.1-5 of the package, we noticed the following issues:

  • 1 patch with invalid metadata that ought to be fixed.
Created: 2023-02-26 Last update: 2026-07-05 09:30
No known security issue in trixie wishlist

There is 1 open security issue in trixie.

1 ignored issue:
  • CVE-2025-61921: Sinatra is a domain-specific language for creating web applications in Ruby. In versions prior to 4.2.0, there is a denial of service vulnerability in the `If-Match` and `If-None-Match` header parsing component of Sinatra, if the `etag` method is used when constructing the response. Carefully crafted input can cause `If-Match` and `If-None-Match` header parsing in Sinatra to take an unexpected amount of time, possibly resulting in a denial of service attack vector. This header is typically involved in generating the `ETag` header value. Any applications that use the `etag` method when generating a response are impacted. Version 4.2.0 fixes the issue.
Created: 2025-10-11 Last update: 2026-08-02 20:32
news
[rss feed]
  • [2026-07-07] ruby-sinatra 4.2.1-5 MIGRATED to testing (Debian testing watch)
  • [2026-07-04] Accepted ruby-sinatra 4.2.1-5 (source) into unstable (Simon Quigley)
  • [2026-07-03] ruby-sinatra 4.2.1-4 MIGRATED to testing (Debian testing watch)
  • [2026-06-28] Accepted ruby-sinatra 4.2.1-4 (source) into unstable (Antonio Terceiro)
  • [2026-02-26] ruby-sinatra 4.2.1-3 MIGRATED to testing (Debian testing watch)
  • [2026-02-22] Accepted ruby-sinatra 4.2.1-3 (source) into unstable (Simon Quigley)
  • [2026-02-15] Accepted ruby-sinatra 4.2.1-2 (source) into unstable (Simon Quigley)
  • [2025-12-07] Accepted ruby-sinatra 3.0.5-3+deb12u1 (source) into oldstable-proposed-updates (Debian FTP Masters) (signed by: Antonio Terceiro)
  • [2025-10-22] ruby-sinatra 4.2.1-1 MIGRATED to testing (Debian testing watch)
  • [2025-10-19] Accepted ruby-sinatra 4.2.1-1 (source) into unstable (Antonio Terceiro)
  • [2025-08-23] ruby-sinatra 4.1.1-6 MIGRATED to testing (Debian testing watch)
  • [2025-08-21] Accepted ruby-sinatra 4.1.1-6 (source) into unstable (Lucas Nussbaum)
  • [2025-02-12] ruby-sinatra 4.1.1-5 MIGRATED to testing (Debian testing watch)
  • [2025-01-31] Accepted ruby-sinatra 4.1.1-5 (source) into unstable (Sruthi Chandran)
  • [2025-01-31] Accepted ruby-sinatra 4.1.1-4 (source) into unstable (Antonio Terceiro)
  • [2025-01-29] Accepted ruby-sinatra 4.1.1-3 (source) into unstable (Antonio Terceiro)
  • [2025-01-28] Accepted ruby-sinatra 4.1.1-2 (source) into unstable (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2025-01-27] Accepted ruby-sinatra 4.1.1-1 (source) into experimental (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2024-09-12] ruby-sinatra 3.2.0-1 MIGRATED to testing (Debian testing watch)
  • [2024-09-10] Accepted ruby-sinatra 3.2.0-1 (source) into unstable (Antonio Terceiro)
  • [2024-09-05] Accepted ruby-sinatra 2.0.8.1-2+deb11u1 (source) into oldstable-security (Jochen Sprickerhof)
  • [2023-02-13] ruby-sinatra 3.0.5-3 MIGRATED to testing (Debian testing watch)
  • [2023-02-10] Accepted ruby-sinatra 3.0.5-3 (source) into unstable (Sruthi Chandran)
  • [2023-01-10] Accepted ruby-sinatra 2.0.5-4+deb10u2 (source all) into oldstable (Chris Lamb)
  • [2022-12-30] ruby-sinatra 3.0.5-2 MIGRATED to testing (Debian testing watch)
  • [2022-12-26] Accepted ruby-sinatra 3.0.5-2 (source) into unstable (Antonio Terceiro)
  • [2022-12-24] Accepted ruby-sinatra 3.0.5-1 (source) into experimental (Antonio Terceiro)
  • [2022-11-16] Accepted ruby-sinatra 3.0.3-1 (source) into experimental (Lucas Kanashiro)
  • [2022-10-28] Accepted ruby-sinatra 2.0.5-4+deb10u1 (source) into oldstable (Utkarsh Gupta)
  • [2022-08-27] ruby-sinatra 2.2.2-1 MIGRATED to testing (Debian testing watch)
  • 1
  • 2
bugs [bug history graph]
  • all: 0
links
  • homepage
  • lintian
  • buildd: logs, reproducibility
  • popcon
  • browse source code
  • other distros
  • security tracker
  • debian patches
  • debci
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 4.2.1-5

Debian Package Tracker — Copyright 2013-2025 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing