From 5575be049dea88373b42842edd8fa8c082912a7bc01e2757e1946bb29681a120 Mon Sep 17 00:00:00 2001 From: Denisart Benjamin Date: Tue, 4 Feb 2014 15:50:02 +0000 Subject: [PATCH] Accepting request 220844 from home:Nijel:branches:devel:languages:python New package defusedxml Needed for example for tastypie's XML API OBS-URL: https://build.opensuse.org/request/show/220844 OBS-URL: https://build.opensuse.org/package/show/devel:languages:python/python-defusedxml?expand=0&rev=1 --- .gitattributes | 23 ++++++++++++++ .gitignore | 1 + defusedxml-0.4.1.tar.gz | 3 ++ python-defusedxml.changes | 5 +++ python-defusedxml.spec | 66 +++++++++++++++++++++++++++++++++++++++ 5 files changed, 98 insertions(+) create mode 100644 .gitattributes create mode 100644 .gitignore create mode 100644 defusedxml-0.4.1.tar.gz create mode 100644 python-defusedxml.changes create mode 100644 python-defusedxml.spec diff --git a/.gitattributes b/.gitattributes new file mode 100644 index 0000000..9b03811 --- /dev/null +++ b/.gitattributes @@ -0,0 +1,23 @@ +## Default LFS +*.7z filter=lfs diff=lfs merge=lfs -text +*.bsp filter=lfs diff=lfs merge=lfs -text +*.bz2 filter=lfs diff=lfs merge=lfs -text +*.gem filter=lfs diff=lfs merge=lfs -text +*.gz filter=lfs diff=lfs merge=lfs -text +*.jar filter=lfs diff=lfs merge=lfs -text +*.lz filter=lfs diff=lfs merge=lfs -text +*.lzma filter=lfs diff=lfs merge=lfs -text +*.obscpio filter=lfs diff=lfs merge=lfs -text +*.oxt filter=lfs diff=lfs merge=lfs -text +*.pdf filter=lfs diff=lfs merge=lfs -text +*.png filter=lfs diff=lfs merge=lfs -text +*.rpm filter=lfs diff=lfs merge=lfs -text +*.tbz filter=lfs diff=lfs merge=lfs -text +*.tbz2 filter=lfs diff=lfs merge=lfs -text +*.tgz filter=lfs diff=lfs merge=lfs -text +*.ttf filter=lfs diff=lfs merge=lfs -text +*.txz filter=lfs diff=lfs merge=lfs -text +*.whl filter=lfs diff=lfs merge=lfs -text +*.xz filter=lfs diff=lfs merge=lfs -text +*.zip filter=lfs diff=lfs merge=lfs -text +*.zst filter=lfs diff=lfs merge=lfs -text diff --git a/.gitignore b/.gitignore new file mode 100644 index 0000000..57affb6 --- /dev/null +++ b/.gitignore @@ -0,0 +1 @@ +.osc diff --git a/defusedxml-0.4.1.tar.gz b/defusedxml-0.4.1.tar.gz new file mode 100644 index 0000000..f34c483 --- /dev/null +++ b/defusedxml-0.4.1.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:cd551d5a518b745407635bb85116eb813818ecaf182e773c35b36239fc3f2478 +size 48889 diff --git a/python-defusedxml.changes b/python-defusedxml.changes new file mode 100644 index 0000000..6b37bbe --- /dev/null +++ b/python-defusedxml.changes @@ -0,0 +1,5 @@ +------------------------------------------------------------------- +Tue Feb 4 14:26:51 UTC 2014 - mcihar@suse.cz + +- Initial packaging. + diff --git a/python-defusedxml.spec b/python-defusedxml.spec new file mode 100644 index 0000000..fd140d6 --- /dev/null +++ b/python-defusedxml.spec @@ -0,0 +1,66 @@ +# +# spec file for package python-py +# +# Copyright (c) 2014 SUSE LINUX Products GmbH, Nuernberg, Germany. +# +# All modifications and additions to the file contributed by third parties +# remain the property of their copyright owners, unless otherwise agreed +# upon. The license for this file, and modifications and additions to the +# file, is the same license as for the pristine package itself (unless the +# license for the pristine package is not an Open Source License, in which +# case the license is the MIT License). An "Open Source License" is a +# license that conforms to the Open Source Definition (Version 1.9) +# published by the Open Source Initiative. + +# Please submit bugfixes or comments via http://bugs.opensuse.org/ +# + + +Name: python-defusedxml +Version: 0.4.1 +Release: 0 +Summary: XML bomb protection for Python stdlib modules +License: Python-2.0 +Group: Development/Languages/Python +Url: https://pypi.python.org/pypi/defusedxml +Source: https://pypi.python.org/packages/source/d/defusedxml/defusedxml-%{version}.tar.gz +BuildRequires: python-devel +BuildRequires: python-setuptools +BuildRequires: python-xml +Requires: python-xml +BuildRoot: %{_tmppath}/%{name}-%{version}-build +%if 0%{?suse_version} && 0%{?suse_version} <= 1110 +%{!?python_sitelib: %global python_sitelib %(python -c "from distutils.sysconfig import get_python_lib; print get_python_lib()")} +%else +BuildArch: noarch +%endif + +%description +The results of an attack on a vulnerable XML library can be fairly dramatic. +With just a few hundred bytes of XML data an attacker can occupy several +gigabytes of memory within seconds. An attacker can also keep +CPUs busy for a long time with a small to medium size request. + +This library allows for XML to be parsed in a manner that avoids these +pitfalls. + + + +%prep +%setup -q -n defusedxml-%{version} + +%build +python setup.py build + +%install +python setup.py install --prefix=%{_prefix} --root=%{buildroot} + +%check +python setup.py test + +%files +%defattr(-,root,root,-) +%doc LICENSE README.txt CHANGES.txt +%{python_sitelib}/* + +%changelog