From 6a75a10519cb83383bd35bfda6bf2e9ed4b2c9ef Mon Sep 17 00:00:00 2001 From: Dominyk Tiller Date: Sat, 31 Jan 2015 01:27:18 +0000 Subject: ansible: bump requests dependency Fixes CVEs [CVE-2014-1830](https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-201 4-1830) and [CVE-2014-1829](https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-201 4-1829). Not a new CVE, but remains exploitable in Requests versions prior to 2.3.0. Closes #36402. Signed-off-by: Tim D. Smith --- Library/Formula/ansible.rb | 7 +++---- 1 file changed, 3 insertions(+), 4 deletions(-) (limited to 'Library/Formula') diff --git a/Library/Formula/ansible.rb b/Library/Formula/ansible.rb index d2f75df75..6e67c4d1b 100644 --- a/Library/Formula/ansible.rb +++ b/Library/Formula/ansible.rb @@ -1,9 +1,8 @@ -require "formula" - class Ansible < Formula homepage "http://www.ansible.com/home" url "http://releases.ansible.com/ansible/ansible-1.8.2.tar.gz" sha1 "4cfbec3a0850639384c908e77e2823acb1297e1e" + revision 1 head "https://github.com/ansible/ansible.git", :branch => "devel" @@ -23,8 +22,8 @@ class Ansible < Formula end resource "requests" do - url "https://pypi.python.org/packages/source/r/requests/requests-2.2.1.tar.gz" - sha1 "88eb1fd6a0dfb8b97262f8029978d7c75eebc16f" + url "https://pypi.python.org/packages/source/r/requests/requests-2.5.1.tar.gz" + sha1 "f906c441be2f0e7a834cbf701a72788d3ac3d144" end resource "websocket-client" do -- cgit v1.2.3