[Git][security-tracker-team/security-tracker][master] 3 commits: python-pip 23.3 vendors python-truststore

Stefano Rivera (@stefanor) stefanor at debian.org
Thu Oct 19 21:02:34 BST 2023



Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4aa8a820 by Stefano Rivera at 2023-10-19T22:02:18+02:00
python-pip 23.3 vendors python-truststore

- - - - -
5f3516e0 by Stefano Rivera at 2023-10-19T22:02:18+02:00
Revert "python2-pip's vendored modules"

python2-pip never made it into a stable Debian release

This reverts commit c818bfa9d1270b1360e64aa177f0d2b060d1c831.

- - - - -
f5274264 by Stefano Rivera at 2023-10-19T22:02:18+02:00
html5lib is no longer vendored in python-pip

- - - - -


1 changed file:

- data/embedded-code-copies


Changes:

=====================================
data/embedded-code-copies
=====================================
@@ -1528,8 +1528,6 @@ pyparsing
 	- polybori <unknown> (embed)
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 	- python-whoosh <unknown> (embed)
 	- twill <unknown> (embed)
 	- zope-textindexng3 <unknown> (embed)
@@ -1675,8 +1673,6 @@ python3.6
 python3.7
 	- pypy3 <unfixable> (fork)
 	NOTE: embeds stdlib
-	- python2-pip <unfixable> (embed)
-	NOTE: embeds contextlib - https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 argparse
 	- twill <unfixed> (embed; bug #555347)
@@ -3647,76 +3643,52 @@ xorg-server
 python-cachecontrol
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-certifi
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 chardet
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-colorama
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 distlib
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-distro
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 html5lib
-	- python-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
+	- python-pip 22.2+dfsg-1 (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-idna
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-msgpack
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-packaging
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 	- wheel <unfixable> (embed)
 	NOTE: Wheel is installed in virtualenvs, so we leave packaging vendored
 
 pep517
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 setuptools
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 platformdirs
 	- python-pip <unfixable> (embed)
@@ -3725,26 +3697,18 @@ platformdirs
 python-progress
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 requests
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-resolvelib
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 six
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-tenacity
 	- python-pip <unfixable> (embed)
@@ -3757,30 +3721,10 @@ python-tomli
 python-urllib3
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-webencodings
 	- python-pip <unfixable> (embed)
 	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-
-appdirs
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-
-python-ipaddress
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-
-python-retrying
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
-
-python-toml
-	- python2-pip <unfixable> (embed)
-	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html
 
 python-tornado
 	- salt <unfixed>
@@ -3817,3 +3761,7 @@ cakephp
 ruby-arel
 	- rails 2:6.1.7.3+dfsg-2 (embed; bug #1038935) [activerecord/lib/arel*]
 	NOTE: ruby-arel to be RM'd from bookworm as well through -pu, in favor of the embedded copy
+
+python-truststore
+	- python-pip <unfixable> (embed)
+	NOTE: https://lists.debian.org/debian-python/2021/09/msg00031.html



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/1f3af91d7eea2cca104d3412500e9d02a55a82d2...f527426473925ddeb44dbc55d0cf5a6467d398c7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/1f3af91d7eea2cca104d3412500e9d02a55a82d2...f527426473925ddeb44dbc55d0cf5a6467d398c7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231019/aed74096/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list