Currently snakeyaml is at version 1.8 in Fedora and JRuby which depends on it is at version 1.6.3. A CVE (#770821) has been filed against JRuby which requires us to update to version 1.6.5.1 which depends on the latest snakeyaml release 1.9 Could you update the version of snakeyaml in Fedora rawhide, f16, to version 1.9? Here is the changelog and updated spec / srpm which I've built: http://code.google.com/p/snakeyaml/wiki/changes http://mo.morsi.org/files/rpms/snakeyaml-1.9-1.fc16.src.rpm mo.morsi.org/files/rpms/snakeyaml.spec Alternatively, I've requested committer rights for snakeyaml in the pkgdb. If you would like to add me as a comaintainer, I can just push these updates myself. Thank you greatly
Hello. I'll add You as comaintainer, but the spec file needs to be changed to meet the latest guidelines (update_maven_depmap, add_to_maven_depmap -> add_maven_depmap). Please, do the changes prior to the commit. Thanks in advance, Jaromir.
Just updated the package to comply to the latest Java guidelines and pushed / rebuilt against Rawhide, F17, F16.