From patchwork Mon Jul 8 20:42:21 2019 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Pierre-Jean Texier X-Patchwork-Id: 1129337 Return-Path: X-Original-To: incoming-buildroot@patchwork.ozlabs.org Delivered-To: patchwork-incoming-buildroot@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=busybox.net (client-ip=140.211.166.133; helo=hemlock.osuosl.org; envelope-from=buildroot-bounces@busybox.net; receiver=) Authentication-Results: ozlabs.org; dmarc=fail (p=quarantine dis=none) header.from=koncepto.io Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (2048-bit key; unprotected) header.d=koncepto.io header.i=@koncepto.io header.b="s3T3MYfF"; dkim-atps=neutral Received: from hemlock.osuosl.org (smtp2.osuosl.org [140.211.166.133]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 45jHSm0Ww8z9s00 for ; Tue, 9 Jul 2019 06:42:31 +1000 (AEST) Received: from localhost (localhost [127.0.0.1]) by hemlock.osuosl.org (Postfix) with ESMTP id 192FF878F1; Mon, 8 Jul 2019 20:42:30 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from hemlock.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id J+wLkp4GBoE7; Mon, 8 Jul 2019 20:42:28 +0000 (UTC) Received: from ash.osuosl.org (ash.osuosl.org [140.211.166.34]) by hemlock.osuosl.org (Postfix) with ESMTP id 972EF878F7; Mon, 8 Jul 2019 20:42:28 +0000 (UTC) X-Original-To: buildroot@lists.busybox.net Delivered-To: buildroot@osuosl.org Received: from silver.osuosl.org (smtp3.osuosl.org [140.211.166.136]) by ash.osuosl.org (Postfix) with ESMTP id 11F9E1BF473 for ; Mon, 8 Jul 2019 20:42:28 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by silver.osuosl.org (Postfix) with ESMTP id 0EE7F203E9 for ; Mon, 8 Jul 2019 20:42:28 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from silver.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lYvEy3+JIzBH for ; Mon, 8 Jul 2019 20:42:27 +0000 (UTC) X-Greylist: from auto-whitelisted by SQLgrey-1.7.6 Received: from koncepto.io (koncepto.io [195.154.119.111]) by silver.osuosl.org (Postfix) with ESMTPS id 071C42035E for ; Mon, 8 Jul 2019 20:42:26 +0000 (UTC) Received: from menoah.home (lfbn-1-8923-205.w193-250.abo.wanadoo.fr [193.250.65.205]) by koncepto.io (Postfix) with ESMTPSA id 1D82C602C3; Mon, 8 Jul 2019 22:42:23 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=koncepto.io; s=default; t=1562618543; bh=eosR5FqZdhGFc9/Es8P+nEHDTNFNdavyvwGnTgoibp4=; h=From:To:Cc:Subject:Date:From; b=s3T3MYfFN2UXFf5cVT1hmr5xUSlCSyqzNaHymG3IYFEBEn3H5CfuTO94xlM7Cr9P0 0dRkaXy3ov+szFJjoSPKl502+06xRLcUxiExeliCI1AU8ZIp5PgxtOALCu8SeHEDsh sX1Yu3hr9dbiPq9gURdixtYD7zucXFBdQuWJMvzm+4n0+3cGKtbeN6qorOEcjmPh+j 1R8fGjAJawpBh0+W9JsUbEHIB/Wwz41nZSW93Zwq6Oz3HLEzr5cCPk0191RltidTS8 WS0I5fNZ1Q1cHEa163F/PNYiINBT2JFAYbITfFepmf+GVk/sYo1n0HNPnQJ3d1Tfb4 dZC2e4aY217zA== From: Pierre-Jean Texier To: buildroot@buildroot.org Date: Mon, 8 Jul 2019 22:42:21 +0200 Message-Id: <1562618541-11390-1-git-send-email-pjtexier@koncepto.io> X-Mailer: git-send-email 2.7.4 Subject: [Buildroot] [PATCH v2 1/1] package/python-django: bump to version 2.2.3 X-BeenThere: buildroot@busybox.net X-Mailman-Version: 2.1.29 Precedence: list List-Id: Discussion and development of buildroot List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: Pierre-Jean Texier , Oli Vogt , Asaf Kahlon MIME-Version: 1.0 Errors-To: buildroot-bounces@busybox.net Sender: "buildroot" See https://docs.djangoproject.com/en/2.2/releases/2.2.3/ Also, 2.2.x is the new LTS series. Signed-off-by: Pierre-Jean Texier --- Changes v1 -> v2 - bump to 2.2.3 instead of 2.2.2 (suggested by Peter Korsgaard after review of Arnout Vandecappelle) - The 2.2.3 includes the same fix (CVE-2019-12781) as version 2.1.10. package/python-django/python-django.hash | 4 ++-- package/python-django/python-django.mk | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package/python-django/python-django.hash b/package/python-django/python-django.hash index 8cb60ad..0d63853 100644 --- a/package/python-django/python-django.hash +++ b/package/python-django/python-django.hash @@ -1,5 +1,5 @@ # md5, sha256 from https://pypi.org/pypi/django/json -md5 2162aed4111da837433f41a9eed5c8bd Django-2.1.10.tar.gz -sha256 65e2a548a52fca560cdd4e35f4fa1a79140f405af48950e59702a37e4227e958 Django-2.1.10.tar.gz +md5 f152164e77d38460ee06c42c210d2f57 Django-2.2.3.tar.gz +sha256 4d23f61b26892bac785f07401bc38cbf8fa4cec993f400e9cd9ddf28fd51c0ea Django-2.2.3.tar.gz # Locally computed sha256 checksums sha256 b846415d1b514e9c1dff14a22deb906d794bc546ca6129f950a18cd091e2a669 LICENSE diff --git a/package/python-django/python-django.mk b/package/python-django/python-django.mk index 09c1782..2697f05 100644 --- a/package/python-django/python-django.mk +++ b/package/python-django/python-django.mk @@ -4,10 +4,10 @@ # ################################################################################ -PYTHON_DJANGO_VERSION = 2.1.10 +PYTHON_DJANGO_VERSION = 2.2.3 PYTHON_DJANGO_SOURCE = Django-$(PYTHON_DJANGO_VERSION).tar.gz # The official Django site has an unpractical URL -PYTHON_DJANGO_SITE = https://files.pythonhosted.org/packages/be/1b/009ec818adf51c7641f3bd9dae778e8b28291b3ceedb352317b0eeafd7ff +PYTHON_DJANGO_SITE = https://files.pythonhosted.org/packages/d3/20/b447eb3d820e0d05fe83cbfb016842bd8da35f4b0f83498dca43d02aebc3 PYTHON_DJANGO_LICENSE = BSD-3-Clause PYTHON_DJANGO_LICENSE_FILES = LICENSE PYTHON_DJANGO_SETUP_TYPE = setuptools