Changqing Li
f29207ae99
python: Fix CVE-2019-10160
...
(From OE-Core rev: 23d48f2bea2d358bd8d7d4efd07792bc1f3666bd)
Signed-off-by: Changqing Li <changqing.li@windriver.com >
Signed-off-by: Ross Burton <ross.burton@intel.com >
(cherry picked from commit b4240b585d7fcac2fdbf33a8e72d48cb732eb696)
Signed-off-by: Armin Kuster <akuster808@gmail.com >
(cherry picked from commit 10d87a3085665a959a5fda64ae3895cb27ddf343)
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
2019-10-30 13:47:54 +00:00
Chen Qi
0e55cd3815
python: CVE-2019-16056
...
(From OE-Core rev: 49ff6c7ef1d366007c49083f4e5faaf5a9eb086f)
Signed-off-by: Chen Qi <Qi.Chen@windriver.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
Signed-off-by: Armin Kuster <akuster808@gmail.com >
(cherry picked from commit 27be9cf71a6fe906a23e81b56f1cc18a6fc9ef97)
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
2019-10-30 13:47:54 +00:00
Yi Zhao
cd8a048b62
python: add tk-lib as runtime dependency for python-tkinter
...
Fixes:
ERROR: python-2.7.16-r0 do_package_qa: QA Issue:
/usr/lib/python2.7/lib-dynload/_tkinter.so contained in package
python-tkinter requires libtk8.6.so, but no providers found in
RDEPENDS_python-tkinter? [file-rdeps]
(From OE-Core rev: f83ecbabb911c46de77708ede759a0b768928ea2)
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Ross Burton <ross.burton@intel.com >
(cherry picked from commit f78248a2380bbbbf271b5bb02c762f5bc7a3a92e)
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
2019-10-30 13:47:54 +00:00
Anuj Mittal
9cb405a3eb
python: include CVE patches for python-native as well
...
Also avoids maintaining a different set of patches for both.
(From OE-Core rev: e73d5bb4a21497ed645e2a0a4b88c2eeaf65080a)
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
(cherry picked from commit b3b1c00cc46b33ddbf7e008267032220e1e298af)
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
2019-10-30 13:47:54 +00:00
Anuj Mittal
d1c75cb784
python: fix CVE-2019-9740
...
(From OE-Core rev: 8eddac3305b7b428565103cde88cba444e3f0dd0)
(From OE-Core rev: feb8ba6821da5c5ccb7b3f9d71eb9f8859006d23)
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
2019-09-30 16:44:41 +01:00
Martin Jansa
511de9dc47
python: add a fix for CVE-2019-9948 and CVE-2019-9636
...
(From OE-Core rev: 6c8994a6ae8860c4b27d8ec990344c6b099cc685)
Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
2019-06-07 13:57:48 +01:00
Alexander Kanavin
2268bf548a
python: update to 2.7.16
...
Drop backported patches
License-update: copyright years
(From OE-Core rev: 0fec1d486a3ef663dc4bbab76e5ec0ed646f23e4)
Signed-off-by: Alexander Kanavin <alex.kanavin@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org >
2019-06-07 13:57:48 +01:00