From patchwork Fri Apr 24 06:50:56 2020 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Lars-Dominik Braun X-Patchwork-Id: 21448 Return-Path: X-Original-To: patchwork@mira.cbaines.net Delivered-To: patchwork@mira.cbaines.net Received: by mira.cbaines.net (Postfix, from userid 113) id 3E64C27BBE4; Fri, 24 Apr 2020 07:52:14 +0100 (BST) X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on mira.cbaines.net X-Spam-Level: X-Spam-Status: No, score=-2.8 required=5.0 tests=BAYES_00,DKIM_SIGNED, MAILING_LIST_MULTI,T_DKIM_INVALID,URIBL_BLOCKED autolearn=unavailable autolearn_force=no version=3.4.2 Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) by mira.cbaines.net (Postfix) with ESMTP id B531F27BBE1 for ; Fri, 24 Apr 2020 07:52:13 +0100 (BST) Received: from localhost ([::1]:52206 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1jRsC5-0006qi-3F for patchwork@mira.cbaines.net; Fri, 24 Apr 2020 02:52:13 -0400 Received: from eggs.gnu.org ([2001:470:142:3::10]:48576) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1jRsBv-0006oV-G0 for guix-patches@gnu.org; Fri, 24 Apr 2020 02:52:05 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.90_1) (envelope-from ) id 1jRsBu-0001Jp-IH for guix-patches@gnu.org; Fri, 24 Apr 2020 02:52:03 -0400 Received: from debbugs.gnu.org ([209.51.188.43]:44747) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1jRsBu-0001IH-3I for guix-patches@gnu.org; Fri, 24 Apr 2020 02:52:02 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1jRsBt-0000tv-V7 for guix-patches@gnu.org; Fri, 24 Apr 2020 02:52:01 -0400 X-Loop: help-debbugs@gnu.org Subject: [bug#40742] [PATCH] Update python-tortoise-orm and deps (security fix) Resent-From: Lars-Dominik Braun Original-Sender: "Debbugs-submit" Resent-CC: guix-patches@gnu.org Resent-Date: Fri, 24 Apr 2020 06:52:01 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 40742 X-GNU-PR-Package: guix-patches X-GNU-PR-Keywords: patch To: Leo Famulari Cc: 40742@debbugs.gnu.org Received: via spool by 40742-submit@debbugs.gnu.org id=B40742.15877110683404 (code B ref 40742); Fri, 24 Apr 2020 06:52:01 +0000 Received: (at 40742) by debbugs.gnu.org; 24 Apr 2020 06:51:08 +0000 Received: from localhost ([127.0.0.1]:56293 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jRsB1-0000sp-Ej for submit@debbugs.gnu.org; Fri, 24 Apr 2020 02:51:08 -0400 Received: from mail-wm1-f67.google.com ([209.85.128.67]:50427) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jRsAy-0000sJ-8p for 40742@debbugs.gnu.org; Fri, 24 Apr 2020 02:51:06 -0400 Received: by mail-wm1-f67.google.com with SMTP id x25so9206671wmc.0 for <40742@debbugs.gnu.org>; Thu, 23 Apr 2020 23:51:04 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=leibniz-psychology-org.20150623.gappssmtp.com; s=20150623; h=date:from:to:cc:subject:message-id:references:mime-version :content-disposition:in-reply-to:user-agent; bh=PTppAj6N4GPJ95OPR9msg7I6Cbv0o+MoJK1T+WkTSC4=; b=E/h7YDh6TfMoaz7Jkk23BVaiJEo7htQVTA02mJmKR8/oMdNoTN3O9mUML4A2H+Hf6/ 5k8dqUVMb3mXLad7bh9QkEOn3JtdspA6YRE11ujc3wpmxLgrAcFIRKxLfSEnSrWx1DeY bISfx/qRV7o6UnMyRgKV2fYzaM+OtlNe3k2RWbjZOPLjUdsVtFGqFF55A9Mxe9pdr9c/ jRkT+bNBkLaYpdKqhY4cTC2LyjXekwM/He4xCBZCqmq1LJCnXKlZZHyV8doLh93xP/2h lWs8mTXk0p5/ZH7z31PaGXjNF5OEngR/rv98wcaboserxCF5iCrCmNvg6y5CH+Mb6sKr 7WOQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:subject:message-id:references :mime-version:content-disposition:in-reply-to:user-agent; bh=PTppAj6N4GPJ95OPR9msg7I6Cbv0o+MoJK1T+WkTSC4=; b=OBmcrPI3iXOPrtlbBBp+YhkzwKpqZyD58vuyKNNz9EkveMtUm6vofAcdSG3ej+ZQZX VIz5S/N4fCBTmjKyF/cyk0xCdTXKlvC8fLAHFvupkJ0CHOSBZc52Lk8MF8th5ogbh5VR d6Rs0CXhfsPFqfWhNeE6caTkkTAZqDF7Y+9yt5VoaZuuIzIUF0eu57Ryhpe4wuyKFuia YAheOc565pC9WyTyFMtX0wdRGjJ/sxBZDuXDViKb4SzuxZBf/g7+FFVtzpIUBh9xdzRI VwzRXou3S5KK0ZP+K04h0hrpTnHLpFbb25VvO1RhnixnR3ZYnPtKX264MHWc0WxbTIQc UwrA== X-Gm-Message-State: AGi0PuYPJ+YgprmxV52b6Ba24OoGAYA+WQyg2iymbhIJIb3yD2hT5Q/U MB2jLiNJX3/oll+8zeH0TG5eYeuLLOttLF/l0/2Cq4Xl/jmkD+EtM/Uon5LKZLpmU70ME3shGc+ gm6jUYidNqbD6pvAE6asLYIPAfU+8jcxv3alBJKS5OvhlOQwwrFc/xW30Id5fvRoL9ki0Okfile Ff6WmU+GEXx5E= X-Google-Smtp-Source: APiQypJq3u2/YS4SpvryTxacrg0axjjYPvuFwWg1yn0Czr5izZvnFDmVgEgedqhBob2s5HV+j1OwyA== X-Received: by 2002:a1c:384:: with SMTP id 126mr8408017wmd.58.1587711058277; Thu, 23 Apr 2020 23:50:58 -0700 (PDT) Received: from localhost (dynamic-2a01-0c23-7c4e-eb00-9040-c1ec-a458-8ab0.c23.pool.telefonica.de. [2a01:c23:7c4e:eb00:9040:c1ec:a458:8ab0]) by smtp.gmail.com with ESMTPSA id t16sm1484368wmi.27.2020.04.23.23.50.56 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Thu, 23 Apr 2020 23:50:56 -0700 (PDT) Date: Fri, 24 Apr 2020 08:50:56 +0200 From: Lars-Dominik Braun Message-ID: <20200424065056.GA3265@zpidnp36> References: <20200421085813.GB3527@zpidnp36> <20200421163207.GA20354@jasmine.lan> MIME-Version: 1.0 Content-Disposition: inline In-Reply-To: <20200421163207.GA20354@jasmine.lan> User-Agent: Mutt/1.10.1 (2018-07-13) X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-Received-From: 209.51.188.43 X-BeenThere: guix-patches@gnu.org List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+patchwork=mira.cbaines.net@gnu.org Sender: "Guix-patches" X-getmail-retrieved-from-mailbox: Patches Hi, > Can we skip patch 2? Or combine it with patch 4? sorry for the delay. I squashed them and got upstream to upload tags to git. Updated patchset attached to this email. Lars From 0cb47c30c36c5e49c666da32d0c234b3120bb0fe Mon Sep 17 00:00:00 2001 From: Lars-Dominik Braun Date: Tue, 21 Apr 2020 10:36:29 +0200 Subject: [PATCH 3/3] gnu: python-tortoise-orm: Update to 0.16.7 0.16.6, which we skipped, includes a security fix. * gnu/packages/databases.scm (python-tortoise-orm)[source]: Update to 0.16.7 [propagated-inputs] Propagate ciso8601, which is required in setup.py --- gnu/packages/databases.scm | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/gnu/packages/databases.scm b/gnu/packages/databases.scm index 57a5128e9e..23b8f14c54 100644 --- a/gnu/packages/databases.scm +++ b/gnu/packages/databases.scm @@ -2197,24 +2197,24 @@ can autogenerate peewee models using @code{pwiz}, a model generator.") (define-public python-tortoise-orm (package (name "python-tortoise-orm") - (version "0.16.3") + (version "0.16.7") (source (origin (method url-fetch) (uri (pypi-uri "tortoise-orm" version)) (sha256 (base32 - "01hbvfyxs2qd1mjc96aipwsdxxhydw8ww686r4gsf87bl6f98dvz")))) + "0wr7p4v0b16ypm9fcpwpl99kf491m6w3jkd13xcsgq13fy73fbqc")))) (build-system python-build-system) ;; Disable tests for now. They pull in a lot of dependencies. (arguments `(#:tests? #f)) (native-inputs - `(("python-ciso8601" ,python-ciso8601) - ("python-asynctest" ,python-asynctest) + `(("python-asynctest" ,python-asynctest) ("python-nose2" ,python-nose2))) (propagated-inputs `(("python-aiosqlite" ,python-aiosqlite) ("python-pypika" ,python-pypika) + ("python-ciso8601" ,python-ciso8601) ("python-typing-extensions" ,python-typing-extensions))) (home-page -- 2.20.1