From 5f6b96e5bebadfa7283108067b63572c297aace6 Mon Sep 17 00:00:00 2001 From: Fathi Boudra Date: Wed, 27 Mar 2024 11:38:11 +0100 Subject: python3-django: upgrade 4.2.10 -> 4.2.11 CVE-2024-27351: Potential regular expression denial-of-service in django.utils.text.Truncator.words() Fixed a regression in Django 4.2.10 where intcomma template filter could return a leading comma for string representation of floats. https://code.djangoproject.com/ticket/35172 Signed-off-by: Fathi Boudra Signed-off-by: Khem Raj --- .../recipes-devtools/python/python3-django_4.2.10.bb | 14 -------------- .../recipes-devtools/python/python3-django_4.2.11.bb | 14 ++++++++++++++ 2 files changed, 14 insertions(+), 14 deletions(-) delete mode 100644 meta-python/recipes-devtools/python/python3-django_4.2.10.bb create mode 100644 meta-python/recipes-devtools/python/python3-django_4.2.11.bb diff --git a/meta-python/recipes-devtools/python/python3-django_4.2.10.bb b/meta-python/recipes-devtools/python/python3-django_4.2.10.bb deleted file mode 100644 index c78c8aab5..000000000 --- a/meta-python/recipes-devtools/python/python3-django_4.2.10.bb +++ /dev/null @@ -1,14 +0,0 @@ -require python-django.inc -inherit setuptools3 - -SRC_URI[sha256sum] = "b1260ed381b10a11753c73444408e19869f3241fc45c985cd55a30177c789d13" - -RDEPENDS:${PN} += "\ - python3-sqlparse \ - python3-asgiref \ -" - -# Set DEFAULT_PREFERENCE so that the LTS version of django is built by -# default. To build the 4.x branch, -# PREFERRED_VERSION_python3-django = "4.0.2" can be added to local.conf -DEFAULT_PREFERENCE = "-1" diff --git a/meta-python/recipes-devtools/python/python3-django_4.2.11.bb b/meta-python/recipes-devtools/python/python3-django_4.2.11.bb new file mode 100644 index 000000000..0642b7e7c --- /dev/null +++ b/meta-python/recipes-devtools/python/python3-django_4.2.11.bb @@ -0,0 +1,14 @@ +require python-django.inc +inherit setuptools3 + +SRC_URI[sha256sum] = "6e6ff3db2d8dd0c986b4eec8554c8e4f919b5c1ff62a5b4390c17aff2ed6e5c4" + +RDEPENDS:${PN} += "\ + python3-sqlparse \ + python3-asgiref \ +" + +# Set DEFAULT_PREFERENCE so that the LTS version of django is built by +# default. To build the 4.x branch, +# PREFERRED_VERSION_python3-django = "4.2.11" can be added to local.conf +DEFAULT_PREFERENCE = "-1" -- cgit v1.2.3-54-g00ecf