package/python: security bump to version 2.7.16
authorPeter Korsgaard <peter@korsgaard.com>
Thu, 16 May 2019 14:12:41 +0000 (16:12 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Fri, 17 May 2019 08:36:34 +0000 (10:36 +0200)
commitc970d7d64050bbae1ad81a841d4baff50139c973
treea4eeedae214641fb0b980435ecc5e7cbe547351d
parent5b3c7a3e7828107eaa9dad49ba2650466277d891
package/python: security bump to version 2.7.16

Fixes the following security issues:

- CVE-2013-1752: Change use of readline() in :class:`imaplib.IMAP4_SSL` to limit line length

- CVE-2018-14647: The C accelerated _elementtree module now initializes hash
  randomization salt from _Py_HashSecret instead of libexpat's default
  CSPRNG.

For more details, see the NEWS file:
https://github.com/python/cpython/blob/v2.7.16/Misc/NEWS.d/2.7.16rc1.rst

Refresh patches, drop now upstream
package/python/0035-bpo-35746-Fix-segfault-in-ssl-s-cert-parser-GH-11569.patch
and adjust hash of LICENSE file for a change of copyright years.

run-tests results:
16:05:41 TestPython2                              Starting
16:05:42 TestPython2                              Building
16:11:26 TestPython2                              Building done
16:11:32 TestPython2                              Cleaning up
.
----------------------------------------------------------------------
Ran 1 test in 351.905s

OK

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
27 files changed:
package/python/0003-Change-the-install-location-of-_sysconfigdata.py.patch
package/python/0004-Make-the-compilation-of-.pyc-and-.pyo-conditional.patch
package/python/0005-Adjust-getaddrinfo-test-for-cross-compilation.patch
package/python/0006-Add-minimal-infrastructure-to-be-able-to-disable-ext.patch
package/python/0009-Fix-python-config-for-cross-builds.patch
package/python/0010-Remove-the-python-symlink-install-rules.patch
package/python/0016-Add-an-option-to-disable-installation-of-test-module.patch
package/python/0017-Add-an-option-to-disable-pydoc.patch
package/python/0018-Add-an-option-to-disable-lib2to3.patch
package/python/0019-Add-option-to-disable-the-sqlite3-module.patch
package/python/0020-Add-an-option-to-disable-the-tk-module.patch
package/python/0021-Add-an-option-to-disable-the-curses-module.patch
package/python/0022-Add-an-option-to-disable-expat.patch
package/python/0023-Add-an-option-to-disable-CJK-codecs.patch
package/python/0024-Add-an-option-to-disable-NIS.patch
package/python/0025-Add-an-option-to-disable-unicodedata.patch
package/python/0026-Add-an-option-to-disable-bsddb.patch
package/python/0027-Add-an-option-to-disable-the-ssl-module.patch
package/python/0028-Add-an-option-to-disable-the-bz2-module.patch
package/python/0029-Add-an-option-to-disable-the-zlib-module.patch
package/python/0030-Do-not-install-the-idle-editor.patch
package/python/0031-Add-an-option-to-disable-the-ossaudiodev-module.patch
package/python/0032-Add-option-to-disable-the-hashlib-module.patch
package/python/0033-Add-an-option-to-disable-readline-module.patch
package/python/0035-bpo-35746-Fix-segfault-in-ssl-s-cert-parser-GH-11569.patch [deleted file]
package/python/python.hash
package/python/python.mk