From 7515f8721aeda83a3dd238ff170a6cab9ebabe39 Mon Sep 17 00:00:00 2001 From: Leon Anavi Date: Fri, 25 Apr 2025 12:32:45 +0300 Subject: python3-h11: Upgrade 0.14.0 -> 0.16.0 Upgrade to release 0.16.0: - Reject certain malformed Transfer-Encoding: chunked bodies that were previously accepted. These could have enabled request-smuggling attacks when an h11-based HTTP server was placed behind a load balancer with a matching bug in its chunked handling. Signed-off-by: Leon Anavi Signed-off-by: Khem Raj --- meta-python/recipes-devtools/python/python3-h11_0.14.0.bb | 10 ---------- meta-python/recipes-devtools/python/python3-h11_0.16.0.bb | 10 ++++++++++ 2 files changed, 10 insertions(+), 10 deletions(-) delete mode 100644 meta-python/recipes-devtools/python/python3-h11_0.14.0.bb create mode 100644 meta-python/recipes-devtools/python/python3-h11_0.16.0.bb (limited to 'meta-python/recipes-devtools/python') diff --git a/meta-python/recipes-devtools/python/python3-h11_0.14.0.bb b/meta-python/recipes-devtools/python/python3-h11_0.14.0.bb deleted file mode 100644 index 2bddefa3f0..0000000000 --- a/meta-python/recipes-devtools/python/python3-h11_0.14.0.bb +++ /dev/null @@ -1,10 +0,0 @@ -SUMMARY = "A pure-Python, bring-your-own-I/O implementation of HTTP/1.1" -HOMEPAGE = "https://github.com/python-hyper/h11" -LICENSE = "MIT" -LIC_FILES_CHKSUM = "file://LICENSE.txt;md5=f5501d19c3116f4aaeef89369f458693" - -inherit pypi setuptools3 - -SRC_URI[sha256sum] = "8f19fbbe99e72420ff35c00b27a34cb9937e902a8b810e2c88300c6f0a3b699d" - -RDEPENDS:${PN} += "python3-profile" diff --git a/meta-python/recipes-devtools/python/python3-h11_0.16.0.bb b/meta-python/recipes-devtools/python/python3-h11_0.16.0.bb new file mode 100644 index 0000000000..a47e6ab61e --- /dev/null +++ b/meta-python/recipes-devtools/python/python3-h11_0.16.0.bb @@ -0,0 +1,10 @@ +SUMMARY = "A pure-Python, bring-your-own-I/O implementation of HTTP/1.1" +HOMEPAGE = "https://github.com/python-hyper/h11" +LICENSE = "MIT" +LIC_FILES_CHKSUM = "file://LICENSE.txt;md5=f5501d19c3116f4aaeef89369f458693" + +inherit pypi setuptools3 + +SRC_URI[sha256sum] = "4e35b956cf45792e4caa5885e69fba00bdbc6ffafbfa020300e549b208ee5ff1" + +RDEPENDS:${PN} += "python3-profile" -- cgit v1.2.3-54-g00ecf