Re: RFS: ruby-hiera / CVE-2014-3248

2014-06-10 Thread Jonas Genannt
Hello, > I have a question about this package. Why it is called ruby-hiera, > but not just hiera (like in official puppetlabs repo). There are > some very basic python scripts (which are nothing to compare with > hiera) in debian repository, and those are not prefixed with python-. > So what wro

Re: RFS: ruby-hiera / CVE-2014-3248

2014-06-10 Thread Net Kgk
Hello, I have a question about this package. Why it is called ruby-hiera, but not just hiera (like in official puppetlabs repo). There are some very basic python scripts (which are nothing to compare with hiera) in debian repository, and those are not prefixed with python-. So what wrong with th

Re: RFS: unicorn, ruby-tzinfo, ruby-gettext, ruby-kgio

2014-06-10 Thread Hleb Valoshka
On 6/10/14, Christian Hofstaedtler wrote: > The only thing I can do is a sourceful upload of, say, 0.2.2-1.1 -- > afterall ruby-aggregate is an arch:all package, so there's no binNMU > process for it. Okay, I've pushed changes for 0.2.2-2 -- To UNSUBSCRIBE, email to debian-ruby-requ...@lists.d

RFS: ruby-hiera / CVE-2014-3248

2014-06-10 Thread Jonas Genannt
Hello, I have updated ruby-hiera to 1.3.4, this is a fix for CVE-2014-3248: ruby-hiera (1.3.4-1) unstable; urgency=high . * Team upload. * d/control: - removed version depend on mcollective-common, puppet-common. fits for all debian releases. - added ruby-json to depends, in