summaryrefslogtreecommitdiff
path: root/omnibus_overrides.rb
diff options
context:
space:
mode:
authorTim Smith <tsmith@chef.io>2018-01-05 16:01:06 -0800
committerTim Smith <tsmith@chef.io>2018-01-05 16:01:06 -0800
commitaad8ccf1263bc8848efec5140cc02ef593f0e1d4 (patch)
tree1d2aae850bffcd823b47d13c6b222682eb06b4bb /omnibus_overrides.rb
parent21155f73467969da3b36a35b146100d1a04b0cdf (diff)
downloadchef-aad8ccf1263bc8848efec5140cc02ef593f0e1d4.tar.gz
Update to Ruby 2.4.3ruby243
This resolves this CVE https://www.ruby-lang.org/en/news/2017/12/14/net-ftp-command-injection-cve-2017-17405/ It also backports a few bugfixes from 2.5.0: https://github.com/ruby/ruby/compare/v2_4_2...v2_4_3 Signed-off-by: Tim Smith <tsmith@chef.io>
Diffstat (limited to 'omnibus_overrides.rb')
-rw-r--r--omnibus_overrides.rb2
1 files changed, 1 insertions, 1 deletions
diff --git a/omnibus_overrides.rb b/omnibus_overrides.rb
index c88ebfdcc1..8da7dc9940 100644
--- a/omnibus_overrides.rb
+++ b/omnibus_overrides.rb
@@ -14,7 +14,7 @@ override "libyaml", version: "0.1.7"
override "makedepend", version: "1.0.5"
override "ncurses", version: "5.9"
override "pkg-config-lite", version: "0.28-1"
-override "ruby", version: "2.4.2"
+override "ruby", version: "2.4.3"
override "ruby-windows-devkit-bash", version: "3.1.23-4-msys-1.0.18"
override "util-macros", version: "1.19.0"
override "xproto", version: "7.0.28"