bab078237e- add 22198.patch to build with Sphinx 4Matej Cepl2021-06-18 21:11:16 +00:00
91d6e677aaAccepting request 898503 from devel:languages:python:Factory
Dominique Leuenberger
2021-06-11 20:29:55 +00:00
2aa8e57714Accepting request 898393 from home:dirkmueller:FactoryMatej Cepl2021-06-08 16:39:27 +00:00
c38e8596de- Stop providing "python" symbol (bsc#1185588), which means python2 currently.Matej Cepl2021-05-21 15:17:16 +00:00
82fc01b8d7Accepting request 890780 from devel:languages:python:Factory
Dominique Leuenberger
2021-05-12 17:31:05 +00:00
e509746279- Update to 3.8.10: - Security - bpo-43434: Creating a sqlite3.Connection object now also produces a sqlite3.connect auditing event. Previously this event was only produced by sqlite3.connect() calls. Patch by Erlend E. Aasland. - bpo-43472: Ensures interpreter-level audit hooks receive the cpython.PyInterpreterState_New event when called through the _xxsubinterpreters module. - bpo-43075: Fix Regular Expression Denial of Service (ReDoS) vulnerability in urllib.request.AbstractBasicAuthHandler. The ReDoS-vulnerable regex has quadratic worst-case complexity and it allows cause a denial of service when identifying crafted invalid RFCs. This ReDoS issue is on the client side and needs remote attackers to control the HTTP server. - Core and Builtins - bpo-43105: Importlib now resolves relative paths when creating module spec objects from file locations. - bpo-42924: Fix bytearray repetition incorrectly copying data from the start of the buffer, even if the data is offset within the buffer (e.g. after reassigning a slice at the start of the bytearray to a shorter byte string). - Library - bpo-43993: Update bundled pip to 21.1.1. - bpo-43937: Fixed the turtle module working with non-default root window. - bpo-43930: Update bundled pip to 21.1 and setuptools to 56.0.0 - bpo-43920: OpenSSL 3.0.0: load_verify_locations() nowMatej Cepl2021-05-05 15:36:38 +00:00
0bcf65704aAccepting request 889802 from home:bnavigator:branches:devel:languages:python:FactoryMatej Cepl2021-05-02 17:07:37 +00:00
065f208443Accepting request 889131 from devel:languages:python:Factory
Dominique Leuenberger
2021-05-02 16:35:21 +00:00
8d39a136b6- Update to 3.8.9: - bpo#42988 (bsc#1183374) CVE-2021-3426: Remove the getfile feature of the pydoc module which could be abused to read arbitrary files on the disk (directory traversal vulnerability). Moreover, even source code of Python modules can contain sensitive data like passwords. Vulnerability reported by David Schwörer. - bpo-43285: ftplib no longer trusts the IP address value returned from the server in response to the PASV command by default. This prevents a malicious FTP server from using the response to probe IPv4 address and port combinations on the client network. - Code that requires the former vulnerable behavior may set a trust_server_pasv_ipv4_address attribute on their ftplib.FTP instances to True to re-enable it. - bpo-43439: Add audit hooks for gc.get_objects(), gc.get_referrers() and gc.get_referents(). Patch by Pablo Galindo. - bpo-43660: Fix crash that happens when replacing sys.stderr with a callable that can remove the object while an exception is being printed. Patch by Pablo Galindo. - bpo-35883: Python no longer fails at startup with a fatal error if a command line argument contains an invalid Unicode character. The Py_DecodeLocale() function now escapes byte sequences which would be decoded as Unicode characters outside the [U+0000; U+10ffff] range. - bpo-43406: Fix a possible race condition where PyErr_CheckSignals tries to execute a non-Python signal handler. - bpo-35930: Raising an exception raised in a “future” instanceMatej Cepl2021-04-28 17:38:20 +00:00
f6fabb920eAccepting request 879914 from devel:languages:python:Factory
Dominique Leuenberger
2021-03-18 21:55:01 +00:00
c36a6fcb46- Update to 3.8.8: - bpo#42938 (bsc#1181126): Avoid static buffers when computing the repr of ctypes.c_double and ctypes.c_longdouble values. This issue was assigned CVE-2021-3177. - bpo#42967 (bso#1182379): Fix web cache poisoning vulnerability by defaulting the query args separator to &, and allowing the user to choose a custom separator. This issue was assigned CVE-2021-23336.Matej Cepl2021-02-19 16:53:23 +00:00
9c35fed91cAccepting request 870493 from devel:languages:python:Factory
Dominique Leuenberger
2021-02-15 22:10:21 +00:00
93edfc4871Add bug reference
Steve Kowalik
2021-02-09 01:43:14 +00:00
51990694fa- Add Obsoletes for python3-base when primary interpreter is set to properly replace it during upgrades.
Steve Kowalik
2021-02-09 01:39:02 +00:00
eecd8bd4f8Accepting request 869854 from home:bnavigator:branches:devel:languages:python:FactoryMatej Cepl2021-02-05 23:09:58 +00:00
77c287fd8dAccepting request 868033 from devel:languages:python:Factory
Dominique Leuenberger
2021-02-02 13:24:27 +00:00
2b9c6ad870- Add CVE-2021-3177-buf_ovrfl_PyCArg_repr.patch fixing bsc#1181126 (CVE-2021-3177) buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execution.Matej Cepl2021-01-30 00:23:36 +00:00
35d3ee6f8fAccepting request 854402 from home:bnavigator:branches:devel:languages:python:FactoryMatej Cepl2020-12-10 10:22:04 +00:00
1dff20466e- Add patch sphinx-update-removed-function.patch to no longer call a now removed function and to make documentation build independent of the Sphinx version (bsc#1179630, gh#python/cpython#13236).Matej Cepl2020-12-05 17:29:43 +00:00
ddee5138e4- Add importlib_resources provide/obsolete as it is integral part of the lang since 3.7 releaseMatej Cepl2020-12-02 10:59:25 +00:00
ad47c7cedeAccepting request 850380 from devel:languages:python:Factory
Dominique Leuenberger
2020-11-29 11:18:26 +00:00
35dd29ddf6Accepting request 849807 from home:bnavigator:branches:devel:languages:pythonMarkéta Machová2020-11-24 09:10:25 +00:00
cbe4307652Accepting request 847346 from devel:languages:python:Factory
Dominique Leuenberger
2020-11-15 14:16:53 +00:00
ed35b7a69f- Update to 3.8.6, which contains various bug fixes including security fix of included pip and setuptools (bpo#41490, bsc#1176262, CVE-2019-20916). Full list of changes is available at https://docs.python.org/release/3.8.6/whatsnew/changelog.html#python-3-8-6 - Revert previous patch, and readd bpo-31046_ensurepip_honours_prefix.patch.Matej Cepl2020-11-09 12:09:08 +00:00
772de6c5cdAccepting request 845109 from home:mcepl:branches:devel:languages:python:FactoryMarkéta Machová2020-11-03 10:37:26 +00:00
d67f665095Accepting request 842170 from devel:languages:python:Factory
Dominique Leuenberger
2020-10-22 12:20:18 +00:00
4cbb3a7f93Accepting request 840193 from devel:languages:python:Factory
Dominique Leuenberger
2020-10-15 11:43:20 +00:00
b0678855e5Accepting request 840459 from home:dimstar:Factory
Tomáš Chvátal
2020-10-12 06:51:50 +00:00
4919d1c0ae- This release also fixes CVE-2020-26116 (bsc#1177211).
Steve Kowalik
2020-10-08 08:04:05 +00:00
12a99ccde8Accepting request 837365 from home:dimstar:Factory
Tomáš Chvátal
2020-09-25 10:22:45 +00:00
b34286af0aAccepting request 831136 from devel:languages:python:Factory
Dominique Leuenberger
2020-09-08 20:55:00 +00:00
0c680d8e86Accepting request 821971 from home:gmbr3:ActiveMatej Cepl2020-07-20 18:57:14 +00:00
ec8e13b00e- Few minor fixes for the non-primary-interpreter option found in py3.9
Tomáš Chvátal
2020-07-17 06:41:37 +00:00
245640d1a0Accepting request 821072 from devel:languages:python:Factory
Dominique Leuenberger
2020-07-26 14:13:55 +00:00
689e6c93a6Accepting request 821067 from home:gmbr3:testing
Tomáš Chvátal
2020-07-15 10:44:04 +00:00
b7439f20fa- Fix minor issues found in the staging.
Tomáš Chvátal
2020-07-15 09:11:27 +00:00
e6ebe7eed4- Removed OBS_dev-shm.patch: contained in upstream - Removed bpo40784-Fix-sqlite3-deterministic-test.patch: contained in upstream - Changed bpo-31046_ensurepip_honours_prefix.patch: to be compatible with new versionMatej Cepl2020-07-14 20:40:48 +00:00
3249fa98fd- Update to 3.8.4: - Assignment expressions (PEP-572) - Positional-only parameters (PEP-570) - Parallel filesystem cache for compiled bytecode files (PYTHONPYCACHEPREFIX variable) - Debug build uses the same ABI as release build - f-strings support = for self-documenting expressions and debugging - Python Runtime Audit Hooks (PEP-578) - Python Initialization Configuration (PEP-587) - Vectorcall: a fast calling protocol for CPython (PEP-590) - Pickle protocol 5 with out-of-band data buffers (PEP-574) - Many other smaller bug fixesMatej Cepl2020-07-14 20:32:47 +00:00
476451f1a8Accepting request 820679 from home:gmbr3:ActiveMatej Cepl2020-07-13 12:13:55 +00:00
7091281f60- Update pre_checkin.sh and regenerate
Tomáš Chvátal
2020-07-10 10:55:28 +00:00
ab1a9a63ee- Convert few dependencies to their pkgconfig counterparts
Tomáš Chvátal
2020-07-10 10:11:54 +00:00
8aaa5524f2- Remove release requirement on libpython, it is not really needed to be equal as the abi changes with versions
Tomáš Chvátal
2020-07-10 10:09:11 +00:00
ecb58de0d6- Add provides python3-bla on all the subpkgs in case we are primary provider of the functionality
Tomáš Chvátal
2020-07-10 10:08:24 +00:00
f935fec56c- Remove unversioned files from devel subpkg too
Tomáš Chvátal
2020-07-10 10:02:45 +00:00
5c8138e56b- Remove main python3 files from -base based whether we are primary interpreter or not
Tomáš Chvátal
2020-07-10 09:56:59 +00:00
1553080af8- Fix idle to be co-installable
Tomáš Chvátal
2020-07-10 09:35:42 +00:00
1c51f99915- Add condition to be primary to provide/obsolete python3-* - Fix doc to build in versioned folder so the pythons can be installed next to each other
Tomáš Chvátal
2020-07-10 08:45:45 +00:00
b7173901d3- Revert the full versioning of calls on the macros. These are generic so they should really just call python3 X
Tomáš Chvátal
2020-07-10 07:57:38 +00:00
cb7558d16f- For the doc package we can build with generic flavor, we don't need the our-interpreter based one
Tomáš Chvátal
2020-07-10 07:56:41 +00:00
a39a1b0f2c- Add provides for pytohn3X-typing/etc to allow BR on those still to work when needed
Tomáš Chvátal
2020-07-10 07:19:25 +00:00
dc258d6692- Change macros.python3 to use full versioned 3.8 instead of just 3 for python interpreter
Tomáš Chvátal
2020-07-10 07:16:00 +00:00
b1820dc3e4- Change macros.python3 to use full versioned 3.8 instead of just 3 for python interpreter
Tomáš Chvátal
2020-07-10 07:15:29 +00:00
aef62c368cosc copypac from project:devel:languages:python:Factory package:python3 revision:376, using expand
Tomáš Chvátal
2020-07-10 07:12:09 +00:00