Wed Jan 19 09:48:47 2022 UTC ()
py-django2: updated to 2.2.26

Django 2.2.26 fixes one security issue with severity ���medium��� and two security issues with severity ���low��� in 2.2.25.
- CVE-2021-45115: Denial-of-service possibility in UserAttributeSimilarityValidator
- CVE-2021-45116: Potential information disclosure in dictsort template filter
- CVE-2021-45452: Potential directory-traversal via Storage.save()


(adam)
diff -r1.40 -r1.41 pkgsrc/www/py-django2/Makefile
diff -r1.37 -r1.38 pkgsrc/www/py-django2/distinfo

cvs diff -r1.40 -r1.41 pkgsrc/www/py-django2/Attic/Makefile (expand / switch to unified diff)

--- pkgsrc/www/py-django2/Attic/Makefile 2022/01/05 15:51:59 1.40
+++ pkgsrc/www/py-django2/Attic/Makefile 2022/01/19 09:48:47 1.41
@@ -1,18 +1,17 @@ @@ -1,18 +1,17 @@
1# $NetBSD: Makefile,v 1.40 2022/01/05 15:51:59 wiz Exp $ 1# $NetBSD: Makefile,v 1.41 2022/01/19 09:48:47 adam Exp $
2 2
3DISTNAME= Django-2.2.25 3DISTNAME= Django-2.2.26
4PKGNAME= ${PYPKGPREFIX}-${DISTNAME:tl} 4PKGNAME= ${PYPKGPREFIX}-${DISTNAME:tl}
5PKGREVISION= 2 
6CATEGORIES= www python 5CATEGORIES= www python
7MASTER_SITES= https://www.djangoproject.com/m/releases/${PKGVERSION_NOREV:R}/ 6MASTER_SITES= https://www.djangoproject.com/m/releases/${PKGVERSION_NOREV:R}/
8MASTER_SITES+= ${MASTER_SITE_PYPI:=D/Django/} 7MASTER_SITES+= ${MASTER_SITE_PYPI:=D/Django/}
9 8
10MAINTAINER= joerg@NetBSD.org 9MAINTAINER= joerg@NetBSD.org
11HOMEPAGE= https://www.djangoproject.com/ 10HOMEPAGE= https://www.djangoproject.com/
12COMMENT= Django, a high-level Python Web framework 11COMMENT= Django, a high-level Python Web framework
13LICENSE= modified-bsd 12LICENSE= modified-bsd
14 13
15DEPENDS+= ${PYPKGPREFIX}-pytz-[0-9]*:../../time/py-pytz 14DEPENDS+= ${PYPKGPREFIX}-pytz-[0-9]*:../../time/py-pytz
16 15
17USE_LANGUAGES= # none 16USE_LANGUAGES= # none
18 17

cvs diff -r1.37 -r1.38 pkgsrc/www/py-django2/Attic/distinfo (expand / switch to unified diff)

--- pkgsrc/www/py-django2/Attic/distinfo 2021/12/14 08:57:48 1.37
+++ pkgsrc/www/py-django2/Attic/distinfo 2022/01/19 09:48:47 1.38
@@ -1,5 +1,5 @@ @@ -1,5 +1,5 @@
1$NetBSD: distinfo,v 1.37 2021/12/14 08:57:48 adam Exp $ 1$NetBSD: distinfo,v 1.38 2022/01/19 09:48:47 adam Exp $
2 2
3BLAKE2s (Django-2.2.25.tar.gz) = e36ecf01dce63154767e67022e29d888bb1038371ec333fa7b563887aeafa6fd 3BLAKE2s (Django-2.2.26.tar.gz) = c7af7c82d511165c1e1bb4ea9fcbc39d23bbc509d2a4e6aac182f9e969748f18
4SHA512 (Django-2.2.25.tar.gz) = c3d377c8d1ce54c93477615cff1cc74fc21791bc9db6b059787e07d0bc25b4d0c1a5804bf781d45ebba1f5f5c280957cff2bba063fea4fc005a1e945b9a7fa8f 4SHA512 (Django-2.2.26.tar.gz) = 2005b081e7347f6f8fd4837219043bd1728cd85aca00c62a16432f63272abec7d30b7461675708fa0f55e3273af5bbd67c26d31934f8a4a38f48e65ea721916f
5Size (Django-2.2.25.tar.gz) = 9185326 bytes 5Size (Django-2.2.26.tar.gz) = 9207984 bytes