platform/upstream/python.git
16 months ago[CVE-2022-45061] Fix quadratic time idna decoding. 38/290538/1 accepted/tizen_8.0_base accepted/tizen_base accepted/tizen_base_tool tizen_8.0_base tizen_base accepted/tizen/8.0/base/20231005.045056 accepted/tizen/base/20230714.003458 accepted/tizen/base/tool/20230330.065249 submit/tizen_base/20230329.061525 tizen_8.0_m2_release
Miss Islington (bot) [Tue, 8 Nov 2022 02:57:10 +0000 (18:57 -0800)]
[CVE-2022-45061] Fix quadratic time idna decoding.

gh-98433: Fix quadratic time idna decoding. (GH-99092) (GH-99222)

There was an unnecessary quadratic loop in idna decoding. This restores
the behavior to linear.

(cherry picked from commit d315722564927c7202dd6e111dc79eaf14240b0d)

(cherry picked from commit a6f6c3a3d6f2b580f2d87885c9b8a9350ad7bf15)

Change-Id: I44e6d661eaaf144e742c1d30712d60785a4fee0c
Co-authored-by: Miss Islington (bot) <31488909+miss-islington@users.noreply.github.com>
Co-authored-by: Gregory P. Smith <greg@krypto.org>
Signed-off-by: JinWang An <jinwang.an@samsung.com>
16 months ago[CVE-2021-3733] Fix ReDoS in request 34/290534/1
JinWang An [Tue, 28 Mar 2023 08:07:59 +0000 (17:07 +0900)]
[CVE-2021-3733] Fix ReDoS in request

Change-Id: I9d4f7bf7e4ce08fe9f8165fcd16b9e17d1de193a
Signed-off-by: JinWang An <jinwang.an@samsung.com>
16 months ago[CVE-2021-23336] only use '&' as a query string separator 31/290531/3
Senthil Kumaran [Mon, 15 Feb 2021 19:16:43 +0000 (11:16 -0800)]
[CVE-2021-23336] only use '&' as a query string separator

bpo-42967: only use '&' as a query string separator (GH-24297) (GH-24532)

bpo-42967: [security] Address a web cache-poisoning issue reported in
urllib.parse.parse_qsl().

urllib.parse will only us "&" as query string separator by default
instead of both ";" and "&" as allowed in earlier versions. An optional
argument seperator with default value "&" is added to specify the
separator.

Change-Id: I8bd6b496bd37e915364dee8a822dfb022071ab5f
Co-authored-by: ?ric Araujo <merwok@netwok.org>
Co-authored-by: Ken Jin <28750310+Fidget-Spinner@users.noreply.github.com>
Co-authored-by: Adam Goldschmidt <adamgold7@gmail.com>
Signed-off-by: JinWang An <jinwang.an@samsung.com>
16 months ago[CVE-2022-0391] urllib_parse newline parsing 28/290528/1
JinWang An [Tue, 28 Mar 2023 06:57:05 +0000 (15:57 +0900)]
[CVE-2022-0391] urllib_parse newline parsing

Change-Id: I2f6fb8c3ed7bc02716d11952b891331f62f1843f
Signed-off-by: JinWang An <jinwang.an@samsung.com>
16 months ago[CVE-2015-20107] Make mailcap refuse to match unsafe filenames/types/params 22/290522/1
JinWang An [Tue, 28 Mar 2023 05:51:35 +0000 (14:51 +0900)]
[CVE-2015-20107] Make mailcap refuse to match unsafe filenames/types/params

Change-Id: I8ea488dc4d67657383097838417639a5d3a31ac3
Signed-off-by: JinWang An <jinwang.an@samsung.com>
17 months agolibffi: Fix compilation problems after upgrade 10/287910/1 submit/tizen_base/20230207.215539 submit/tizen_base/20230208.065333
Łukasz Stelmach [Mon, 6 Feb 2023 09:43:11 +0000 (10:43 +0100)]
libffi: Fix compilation problems after upgrade

Change-Id: I49bb365826684d3325453647849908e00421ac0a
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
17 months agopackaging: build for riscv64 04/287704/1 submit/tizen_base/20230203.000928
Łukasz Stelmach [Thu, 18 Aug 2022 14:58:51 +0000 (16:58 +0200)]
packaging: build for riscv64

Change-Id: I4532fd3ad8fd1245dbf409c4b212736f2766cf48
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
17 months agolibffi: adapt Python bits to support RISC-V 03/287703/1
Łukasz Stelmach [Fri, 19 Aug 2022 12:40:44 +0000 (14:40 +0200)]
libffi: adapt Python bits to support RISC-V

Change-Id: Ib3e1b70356b85ad4da137e5aa4d68644b1f71445
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
17 months agolibffi 3.3 with RISC-V support 02/287702/1
Łukasz Stelmach [Fri, 19 Aug 2022 11:41:51 +0000 (13:41 +0200)]
libffi 3.3 with RISC-V support

Change-Id: I7a0af93247037f30fcb3161e52dfee9baf201d4e
Signed-off-by: Łukasz Stelmach <l.stelmach@samsung.com>
2 years agoAdded no_sanitize_hwaddress attribute for PyObject_Free 32/263832/1 accepted/tizen_6.5_base accepted/tizen_6.5_base_tool accepted/tizen_7.0_base accepted/tizen_7.0_base_hotfix accepted/tizen_7.0_base_tool accepted/tizen_7.0_base_tool_hotfix tizen_6.5_base tizen_7.0_base tizen_7.0_base_hotfix accepted/tizen/6.5/base/20230714.002641 accepted/tizen/6.5/base/tool/20211027.120703 accepted/tizen/7.0/base/20230714.003049 accepted/tizen/7.0/base/hotfix/20230714.003900 accepted/tizen/7.0/base/tool/20221028.122045 accepted/tizen/7.0/base/tool/hotfix/20221115.090627 accepted/tizen/base/tool/20210913.002645 submit/tizen_6.5_base/20211026.180901 submit/tizen_6.5_base/20211027.183101 submit/tizen_6.5_base/20211027.201001 submit/tizen_7.0_base/20221028.201101 submit/tizen_7.0_base_hotfix/20221115.161601 submit/tizen_base/20210910.123310 tizen_6.5.m2_release tizen_7.0_m2_release
Andrey Kazmin [Wed, 31 Mar 2021 12:37:23 +0000 (15:37 +0300)]
Added no_sanitize_hwaddress attribute for PyObject_Free

Change-Id: I52dc2e8c405064463d84201ee3fb8f5291d47c9b
Signed-off-by: Andrey Kazmin <a.kazmin@partner.samsung.com>
3 years agoAdd pie compile option 41/250141/2 accepted/tizen/base/tool/20201224.084054 submit/tizen_base/20201221.070703
DongHun Kwak [Mon, 21 Dec 2020 07:01:31 +0000 (16:01 +0900)]
Add pie compile option

Change-Id: I3bd2e4342a85a5d13887184820ca1432e15dff88

3 years agoBump to python 2.7.18 81/249481/3 sandbox/dh0128.kwak/python-2.7.18_20201208 accepted/tizen/base/tool/20201219.095645 submit/tizen_base/20201214.004736 submit/tizen_base/20201216.221339
DongHun Kwak [Mon, 14 Dec 2020 00:38:18 +0000 (09:38 +0900)]
Bump to python 2.7.18

Change-Id: I446952c1591b00918a3f6e7609f8a2a05540ee71
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
3 years agoImported Upstream version 2.7.18 upstream submit/tizen_base/20201208.051231 upstream/2.7.18
DongHun Kwak [Tue, 8 Dec 2020 01:59:51 +0000 (10:59 +0900)]
Imported Upstream version 2.7.18

4 years agoImported Upstream version 2.7.17 upstream/2.7.17
Hyunjee Kim [Mon, 25 Nov 2019 08:02:02 +0000 (17:02 +0900)]
Imported Upstream version 2.7.17

4 years agoImported Upstream version 2.7.16 upstream/2.7.16
Hyunjee Kim [Mon, 25 Nov 2019 08:01:31 +0000 (17:01 +0900)]
Imported Upstream version 2.7.16

5 years agoImported Upstream version 2.7.15 50/187350/1 upstream/2.7.15
DongHun Kwak [Wed, 22 Aug 2018 06:55:41 +0000 (15:55 +0900)]
Imported Upstream version 2.7.15

Change-Id: Id9c63619cb3e0b8e0af22357474f6f6429c63c61
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
5 years agoImported Upstream version 2.7.14 49/187349/1 upstream/2.7.14
DongHun Kwak [Wed, 22 Aug 2018 06:55:10 +0000 (15:55 +0900)]
Imported Upstream version 2.7.14

Change-Id: Icfe8dc39f6e866f9cdf059cfd57789fed01f9469
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
7 years agoImported Upstream version 2.7.13 51/138351/1 upstream/2.7.13
DongHun Kwak [Wed, 12 Jul 2017 02:06:20 +0000 (11:06 +0900)]
Imported Upstream version 2.7.13

Change-Id: Ide143efb88a819e2d9b350dbcbbfa75b890f0667
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
7 years agoImported Upstream version 2.7.12 50/138350/1 upstream/2.7.12
DongHun Kwak [Wed, 12 Jul 2017 02:05:55 +0000 (11:05 +0900)]
Imported Upstream version 2.7.12

Change-Id: Id086dcc8e315c8ad61502768ef9b92372461e560
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
7 years agoImported Upstream version 2.7.11 49/138349/1 upstream/2.7.11
DongHun Kwak [Wed, 12 Jul 2017 02:05:38 +0000 (11:05 +0900)]
Imported Upstream version 2.7.11

Change-Id: I6fd1d4f1828aa56cf9e1ece97699852529157243
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
7 years agoImported Upstream version 2.7.10 48/138348/1 upstream/2.7.10
DongHun Kwak [Wed, 12 Jul 2017 02:05:23 +0000 (11:05 +0900)]
Imported Upstream version 2.7.10

Change-Id: I71e04a6e83b31198e3aff21913814359e60b7843
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
7 years agoImported Upstream version 2.7.9 47/138347/1 upstream/2.7.9
DongHun Kwak [Wed, 12 Jul 2017 02:04:35 +0000 (11:04 +0900)]
Imported Upstream version 2.7.9

Change-Id: If7320cd9a5b047aa0471ec569221ef7d9bc978b4
Signed-off-by: DongHun Kwak <dh0128.kwak@samsung.com>
9 years agoImported Upstream version 2.7.8 upstream/2.7.8
Chanho Park [Tue, 19 Aug 2014 10:35:08 +0000 (19:35 +0900)]
Imported Upstream version 2.7.8

11 years agoImported Upstream version 2.7.3 upstream/2.7.3
Anas Nashif [Wed, 7 Nov 2012 15:15:08 +0000 (07:15 -0800)]
Imported Upstream version 2.7.3