Summary: | [exp-run]lang/python39: Update to 3.9.19 | ||||||
---|---|---|---|---|---|---|---|
Product: | Ports & Packages | Reporter: | Wen Heping <wen> | ||||
Component: | Individual Port(s) | Assignee: | Wen Heping <wen> | ||||
Status: | New --- | ||||||
Severity: | Affects Only Me | CC: | diario202 | ||||
Priority: | --- | Flags: | antoine:
exp-run+
|
||||
Version: | Latest | ||||||
Hardware: | Any | ||||||
OS: | Any | ||||||
Attachments: |
|
Is there a specific reason for asking an exp-run (in the changelog maybe) ? There was an exp-run to switch default version of python to 3.11 in the last months. Also lang/python311 was upgraded without an exp-run. (In reply to Antoine Brodin from comment #1) python 3.9.18 is vulnerable to 2 CVEs: https://nvd.nist.gov/vuln/detail/CVE-2023-6597 https://nvd.nist.gov/vuln/detail/CVE-2024-0450 python 3.9.19 is safe. More info on Gentoo bugzilla: https://bugs.gentoo.org/927299 Since default python version in the ports tree is python 3.9, I think this will affect many people in the freebsd community. I will do an exp-run because we now have new hardware, but I don't think it's needed. (In reply to Antoine Brodin from comment #4) Thank you for your georgeous work! Exp-run looks fine A commit in branch main references this bug: URL: https://cgit.FreeBSD.org/ports/commit/?id=d50689478e72327eccb0078d33ef5e30f9074fc4 commit d50689478e72327eccb0078d33ef5e30f9074fc4 Author: Wen Heping <wen@FreeBSD.org> AuthorDate: 2024-05-14 00:53:53 +0000 Commit: Wen Heping <wen@FreeBSD.org> CommitDate: 2024-05-14 00:56:01 +0000 lang/python39: Update to 3.9.19 PR: 277859 Reported by: wen@ Exp-run by: antoine@ lang/python-doc-html/distinfo | 18 +++++++++--------- lang/python39/Makefile | 1 - lang/python39/Makefile.version | 2 +- lang/python39/distinfo | 6 +++--- 4 files changed, 13 insertions(+), 14 deletions(-) |
Created attachment 249366 [details] Update to 3.9.19 Update to 3.9.19