Skip to content

Commit 6336210

Browse files
[Miniconda] - requests, urllib3 - patched for security vuln (#1107)
1 parent 953fb6f commit 6336210

File tree

2 files changed

+3
-2
lines changed

2 files changed

+3
-2
lines changed

src/miniconda/.devcontainer/apply_security_patches.sh

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22

33
# define array of packages for pinning to the patched versions
44
# vulnerable_packages=( "package1=version1" "package2=version2" "package3=version3" )
5-
vulnerable_packages=( "tqdm=4.66.4" )
5+
vulnerable_packages=( "tqdm=4.66.4" "requests=2.32.0" "urllib3=2.2.2")
66

77
# Define the number of rows (based on the length of vulnerable_packages)
88
rows=${#vulnerable_packages[@]}

src/miniconda/test-project/test.sh

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -21,11 +21,12 @@ check "usr-local-etc-config-does-not-exist" test ! -f "/usr/local/etc/gitconfig"
2121
checkPythonPackageVersion "cryptography" "42.0.4"
2222
checkPythonPackageVersion "setuptools" "65.5.1"
2323
checkPythonPackageVersion "wheel" "0.38.1"
24+
checkPythonPackageVersion "urllib3" "2.2.2"
2425

2526
checkCondaPackageVersion "cryptography" "42.0.4"
2627
checkCondaPackageVersion "setuptools" "65.5.1"
2728
checkCondaPackageVersion "wheel" "0.38.1"
28-
checkCondaPackageVersion "requests" "2.31.0"
29+
checkCondaPackageVersion "requests" "2.32.0"
2930
checkCondaPackageVersion "urllib3" "1.26.17"
3031
checkCondaPackageVersion "idna" "3.7"
3132
checkCondaPackageVersion "tqdm" "4.66.4"

0 commit comments

Comments
 (0)