All of lore.kernel.org
 help / color / mirror / Atom feed
* [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6
@ 2023-10-20  8:27 Adam Duskett
  2023-10-22 18:37 ` Yann E. MORIN
  2023-10-25 20:35 ` Peter Korsgaard
  0 siblings, 2 replies; 6+ messages in thread
From: Adam Duskett @ 2023-10-20  8:27 UTC (permalink / raw)
  To: buildroot; +Cc: James Hilliard, Adam Duskett, Oli Vogt, Asaf Kahlon

Tested with tests.package.test_python_django.TestPythonPy3Django.test_run in
Fedora 38 and Debian 11

Signed-off-by: Adam Duskett <adam.duskett@amarulasolutions.com>
---
 package/python-django/python-django.hash | 4 ++--
 package/python-django/python-django.mk   | 4 ++--
 2 files changed, 4 insertions(+), 4 deletions(-)

diff --git a/package/python-django/python-django.hash b/package/python-django/python-django.hash
index ee1776b44f..b68f4231fa 100644
--- a/package/python-django/python-django.hash
+++ b/package/python-django/python-django.hash
@@ -1,5 +1,5 @@
 # md5, sha256 from https://pypi.org/pypi/django/json
-md5  3720c85a8c25cacbce2f95d345d0f5ad  Django-4.1.10.tar.gz
-sha256  56343019a9fd839e2e5bf203daf45f25af79d5bffa4c71d56eae4f4404d82ade  Django-4.1.10.tar.gz
+md5  ad84c2b9bbebaa26427a2a656fe5ceea  Django-4.2.6.tar.gz
+sha256  08f41f468b63335aea0d904c5729e0250300f6a1907bf293a65499496cdbc68f  Django-4.2.6.tar.gz
 # Locally computed sha256 checksums
 sha256  b846415d1b514e9c1dff14a22deb906d794bc546ca6129f950a18cd091e2a669  LICENSE
diff --git a/package/python-django/python-django.mk b/package/python-django/python-django.mk
index 61dfd54dcd..79065ab60a 100644
--- a/package/python-django/python-django.mk
+++ b/package/python-django/python-django.mk
@@ -4,10 +4,10 @@
 #
 ################################################################################
 
-PYTHON_DJANGO_VERSION = 4.1.10
+PYTHON_DJANGO_VERSION = 4.2.6
 PYTHON_DJANGO_SOURCE = Django-$(PYTHON_DJANGO_VERSION).tar.gz
 # The official Django site has an unpractical URL
-PYTHON_DJANGO_SITE = https://files.pythonhosted.org/packages/70/d4/eded564fa5928f68771d082ec0eef4d023f9d19dfa1d2923305bc3e62afe
+PYTHON_DJANGO_SITE = https://files.pythonhosted.org/packages/23/7b/f47d10d870fabfcaa1fba403460a4e482ab7dbba4d715d43981d1f8c8d85
 PYTHON_DJANGO_LICENSE = BSD-3-Clause
 PYTHON_DJANGO_LICENSE_FILES = LICENSE
 PYTHON_DJANGO_CPE_ID_VENDOR = djangoproject
-- 
2.41.0

_______________________________________________
buildroot mailing list
buildroot@buildroot.org
https://lists.buildroot.org/mailman/listinfo/buildroot

^ permalink raw reply related	[flat|nested] 6+ messages in thread

* Re: [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6
  2023-10-20  8:27 [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6 Adam Duskett
@ 2023-10-22 18:37 ` Yann E. MORIN
  2023-10-25 20:35 ` Peter Korsgaard
  1 sibling, 0 replies; 6+ messages in thread
From: Yann E. MORIN @ 2023-10-22 18:37 UTC (permalink / raw)
  To: Adam Duskett; +Cc: James Hilliard, Oli Vogt, Asaf Kahlon, buildroot

Adam, All,

On 2023-10-20 10:27 +0200, Adam Duskett spake thusly:
> Tested with tests.package.test_python_django.TestPythonPy3Django.test_run in
> Fedora 38 and Debian 11
> 
> Signed-off-by: Adam Duskett <adam.duskett@amarulasolutions.com>

Applied to master, thanks.

Regards,
Yann E. MORIN.

> ---
>  package/python-django/python-django.hash | 4 ++--
>  package/python-django/python-django.mk   | 4 ++--
>  2 files changed, 4 insertions(+), 4 deletions(-)
> 
> diff --git a/package/python-django/python-django.hash b/package/python-django/python-django.hash
> index ee1776b44f..b68f4231fa 100644
> --- a/package/python-django/python-django.hash
> +++ b/package/python-django/python-django.hash
> @@ -1,5 +1,5 @@
>  # md5, sha256 from https://pypi.org/pypi/django/json
> -md5  3720c85a8c25cacbce2f95d345d0f5ad  Django-4.1.10.tar.gz
> -sha256  56343019a9fd839e2e5bf203daf45f25af79d5bffa4c71d56eae4f4404d82ade  Django-4.1.10.tar.gz
> +md5  ad84c2b9bbebaa26427a2a656fe5ceea  Django-4.2.6.tar.gz
> +sha256  08f41f468b63335aea0d904c5729e0250300f6a1907bf293a65499496cdbc68f  Django-4.2.6.tar.gz
>  # Locally computed sha256 checksums
>  sha256  b846415d1b514e9c1dff14a22deb906d794bc546ca6129f950a18cd091e2a669  LICENSE
> diff --git a/package/python-django/python-django.mk b/package/python-django/python-django.mk
> index 61dfd54dcd..79065ab60a 100644
> --- a/package/python-django/python-django.mk
> +++ b/package/python-django/python-django.mk
> @@ -4,10 +4,10 @@
>  #
>  ################################################################################
>  
> -PYTHON_DJANGO_VERSION = 4.1.10
> +PYTHON_DJANGO_VERSION = 4.2.6
>  PYTHON_DJANGO_SOURCE = Django-$(PYTHON_DJANGO_VERSION).tar.gz
>  # The official Django site has an unpractical URL
> -PYTHON_DJANGO_SITE = https://files.pythonhosted.org/packages/70/d4/eded564fa5928f68771d082ec0eef4d023f9d19dfa1d2923305bc3e62afe
> +PYTHON_DJANGO_SITE = https://files.pythonhosted.org/packages/23/7b/f47d10d870fabfcaa1fba403460a4e482ab7dbba4d715d43981d1f8c8d85
>  PYTHON_DJANGO_LICENSE = BSD-3-Clause
>  PYTHON_DJANGO_LICENSE_FILES = LICENSE
>  PYTHON_DJANGO_CPE_ID_VENDOR = djangoproject
> -- 
> 2.41.0
> 
> _______________________________________________
> buildroot mailing list
> buildroot@buildroot.org
> https://lists.buildroot.org/mailman/listinfo/buildroot

-- 
.-----------------.--------------------.------------------.--------------------.
|  Yann E. MORIN  | Real-Time Embedded | /"\ ASCII RIBBON | Erics' conspiracy: |
| +33 662 376 056 | Software  Designer | \ / CAMPAIGN     |  ___               |
| +33 561 099 427 `------------.-------:  X  AGAINST      |  \e/  There is no  |
| http://ymorin.is-a-geek.org/ | _/*\_ | / \ HTML MAIL    |   v   conspiracy.  |
'------------------------------^-------^------------------^--------------------'
_______________________________________________
buildroot mailing list
buildroot@buildroot.org
https://lists.buildroot.org/mailman/listinfo/buildroot

^ permalink raw reply	[flat|nested] 6+ messages in thread

* Re: [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6
  2023-10-20  8:27 [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6 Adam Duskett
  2023-10-22 18:37 ` Yann E. MORIN
@ 2023-10-25 20:35 ` Peter Korsgaard
  2023-10-26 10:26   ` Adam Duskett
  2023-10-30  7:40   ` Peter Korsgaard
  1 sibling, 2 replies; 6+ messages in thread
From: Peter Korsgaard @ 2023-10-25 20:35 UTC (permalink / raw)
  To: Adam Duskett; +Cc: James Hilliard, Oli Vogt, Asaf Kahlon, buildroot

>>>>> "Adam" == Adam Duskett <adam.duskett@amarulasolutions.com> writes:

 > Tested with tests.package.test_python_django.TestPythonPy3Django.test_run in
 > Fedora 38 and Debian 11

 > Signed-off-by: Adam Duskett <adam.duskett@amarulasolutions.com>

Looking at
https://www.djangoproject.com/weblog/2023/oct/04/security-releases/,
Django 4.2.6 was a security release, so it should have been marked as
such (and ideally we would first have bumped to 4.1.12 for easier
backporting).

4.2.6 apparently also introduced a regression, so it would be good if
you could send a bump to 4.2.7:

https://docs.djangoproject.com/en/dev/releases/4.2.7/

-- 
Bye, Peter Korsgaard
_______________________________________________
buildroot mailing list
buildroot@buildroot.org
https://lists.buildroot.org/mailman/listinfo/buildroot

^ permalink raw reply	[flat|nested] 6+ messages in thread

* Re: [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6
  2023-10-25 20:35 ` Peter Korsgaard
@ 2023-10-26 10:26   ` Adam Duskett
  2023-10-26 11:26     ` Peter Korsgaard
  2023-10-30  7:40   ` Peter Korsgaard
  1 sibling, 1 reply; 6+ messages in thread
From: Adam Duskett @ 2023-10-26 10:26 UTC (permalink / raw)
  To: Peter Korsgaard
  Cc: Adam Duskett, buildroot, James Hilliard, Asaf Kahlon, Oli Vogt


[-- Attachment #1.1: Type: text/plain, Size: 1034 bytes --]

Sure Peter; I can update to 4.2.7 when it's released!

Adam

On Wed, Oct 25, 2023 at 10:36 PM Peter Korsgaard <peter@korsgaard.com>
wrote:

> >>>>> "Adam" == Adam Duskett <adam.duskett@amarulasolutions.com> writes:
>
>  > Tested with
> tests.package.test_python_django.TestPythonPy3Django.test_run in
>  > Fedora 38 and Debian 11
>
>  > Signed-off-by: Adam Duskett <adam.duskett@amarulasolutions.com>
>
> Looking at
> https://www.djangoproject.com/weblog/2023/oct/04/security-releases/,
> Django 4.2.6 was a security release, so it should have been marked as
> such (and ideally we would first have bumped to 4.1.12 for easier
> backporting).
>
> 4.2.6 apparently also introduced a regression, so it would be good if
> you could send a bump to 4.2.7:
>
> https://docs.djangoproject.com/en/dev/releases/4.2.7/
>
> --
> Bye, Peter Korsgaard
> _______________________________________________
> buildroot mailing list
> buildroot@buildroot.org
> https://lists.buildroot.org/mailman/listinfo/buildroot
>

[-- Attachment #1.2: Type: text/html, Size: 1953 bytes --]

[-- Attachment #2: Type: text/plain, Size: 150 bytes --]

_______________________________________________
buildroot mailing list
buildroot@buildroot.org
https://lists.buildroot.org/mailman/listinfo/buildroot

^ permalink raw reply	[flat|nested] 6+ messages in thread

* Re: [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6
  2023-10-26 10:26   ` Adam Duskett
@ 2023-10-26 11:26     ` Peter Korsgaard
  0 siblings, 0 replies; 6+ messages in thread
From: Peter Korsgaard @ 2023-10-26 11:26 UTC (permalink / raw)
  To: Adam Duskett
  Cc: Adam Duskett, buildroot, James Hilliard, Asaf Kahlon, Oli Vogt

>>>>> "Adam" == Adam Duskett <aduskett@gmail.com> writes:

 > Sure Peter; I can update to 4.2.7 when it's released!

Ahh, it isn't released yet? Odd that they have release notes already:

https://docs.djangoproject.com/en/dev/releases/4.2.7/

-- 
Bye, Peter Korsgaard
_______________________________________________
buildroot mailing list
buildroot@buildroot.org
https://lists.buildroot.org/mailman/listinfo/buildroot

^ permalink raw reply	[flat|nested] 6+ messages in thread

* Re: [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6
  2023-10-25 20:35 ` Peter Korsgaard
  2023-10-26 10:26   ` Adam Duskett
@ 2023-10-30  7:40   ` Peter Korsgaard
  1 sibling, 0 replies; 6+ messages in thread
From: Peter Korsgaard @ 2023-10-30  7:40 UTC (permalink / raw)
  To: Adam Duskett; +Cc: James Hilliard, Oli Vogt, Asaf Kahlon, buildroot

>>>>> "Peter" == Peter Korsgaard <peter@korsgaard.com> writes:

>>>>> "Adam" == Adam Duskett <adam.duskett@amarulasolutions.com> writes:
 >> Tested with tests.package.test_python_django.TestPythonPy3Django.test_run in
 >> Fedora 38 and Debian 11

 >> Signed-off-by: Adam Duskett <adam.duskett@amarulasolutions.com>

 > Looking at
 > https://www.djangoproject.com/weblog/2023/oct/04/security-releases/,
 > Django 4.2.6 was a security release, so it should have been marked as
 > such (and ideally we would first have bumped to 4.1.12 for easier
 > backporting).

 > 4.2.6 apparently also introduced a regression, so it would be good if
 > you could send a bump to 4.2.7:

 > https://docs.djangoproject.com/en/dev/releases/4.2.7/

For 2023.02.x and 2023.08.x I have instead bumped to 4.1.12, which
contains the same security fix.

-- 
Bye, Peter Korsgaard
_______________________________________________
buildroot mailing list
buildroot@buildroot.org
https://lists.buildroot.org/mailman/listinfo/buildroot

^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2023-10-30  7:40 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2023-10-20  8:27 [Buildroot] [PATCH 1/1] package/python-django: bump version to 4.2.6 Adam Duskett
2023-10-22 18:37 ` Yann E. MORIN
2023-10-25 20:35 ` Peter Korsgaard
2023-10-26 10:26   ` Adam Duskett
2023-10-26 11:26     ` Peter Korsgaard
2023-10-30  7:40   ` Peter Korsgaard

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.