From d4d2c840399a46e74469d16a4d903cbed513884e Mon Sep 17 00:00:00 2001 From: Lumir Balhar Date: Wed, 25 Sep 2024 13:04:03 +0200 Subject: [PATCH] Rebase to 1.26.19 to fix CVE-2024-37891 Resolves: RHEL-59998 --- .gitignore | 1 + python3.12-urllib3.spec | 8 ++++++-- sources | 2 +- 3 files changed, 8 insertions(+), 3 deletions(-) diff --git a/.gitignore b/.gitignore index 1a390e6..c53326a 100644 --- a/.gitignore +++ b/.gitignore @@ -40,3 +40,4 @@ /urllib3-1.26.16.tar.gz /urllib3-1.26.17.tar.gz /urllib3-1.26.18.tar.gz +/urllib3-1.26.19.tar.gz diff --git a/python3.12-urllib3.spec b/python3.12-urllib3.spec index ec7a517..c21139c 100644 --- a/python3.12-urllib3.spec +++ b/python3.12-urllib3.spec @@ -5,8 +5,8 @@ %bcond_with tests Name: python%{python3_pkgversion}-urllib3 -Version: 1.26.18 -Release: 2%{?dist} +Version: 1.26.19 +Release: 1%{?dist} Summary: HTTP library with thread-safe connection pooling, file post, and more # SPDX @@ -130,6 +130,10 @@ ignore="${ignore-} --ignore=test/test_no_ssl.py" %changelog +* Wed Sep 25 2024 Lumír Balhar - 1.26.19-1 +- Rebase to 1.26.19 to fix CVE-2024-37891 +Resolves: RHEL-59998 + * Tue Jan 23 2024 Miro Hrončok - 1.26.18-2 - Rebuilt for timestamp .pyc invalidation mode diff --git a/sources b/sources index a21e385..010dd3d 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (urllib3-1.26.18.tar.gz) = 62c0af4b11e797a85420ef3f0888f2e608334329eddd88b9fe563b5437189cbea8dbbcd53f999557d9828fcf4bf03b8ca9f6e3d401533bc4ae8ff96e3ece1557 +SHA512 (urllib3-1.26.19.tar.gz) = 6b72012dbd85434b2441229cbdea2a94583693f904dde349780e1290d581c8a5e10fe00a287a032ed1276349d0078b530f16a133e0f164dcea18105fa3dec79a