Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

dev-python/pipenv: add 2022.1.8 #23720

Closed
wants to merge 1 commit into from

Conversation

oz123
Copy link
Contributor

@oz123 oz123 commented Jan 9, 2022

Bug: https://bugs.gentoo.org/717666
This is a fix to:
GHSA-qc9x-gjcv-465w

@thesamesam basically, there should be a glsa advisory here, but I don't know how to publish it.

Signed-off-by: Oz N Tiram oz.tiram@gmail.com

@gentoo-bot
Copy link

Pull Request assignment

Submitter: @oz123
Areas affected: ebuilds
Packages affected: dev-python/pipenv

dev-python/pipenv: @oz123, @gentoo/proxy-maint

Linked bugs

No bugs to link found. If your pull request references any of the Gentoo bug reports, please add appropriate GLEP 66 tags to the commit message and request reassignment.


In order to force reassignment and/or bug reference scan, please append [please reassign] to the pull request title.

Docs: Code of ConductCopyright policy (expl.) ● DevmanualGitHub PRsProxy-maint guide

@gentoo-bot gentoo-bot added self-maintained The PR changes only packages that are maintained by the submitter (i.e. no need to ask anybody else) assigned PR successfully assigned to the package maintainer(s). labels Jan 9, 2022
@ajakk
Copy link
Member

ajakk commented Jan 11, 2022

Bug: https://bugs.gentoo.org/717666 This is a fix to: GHSA-qc9x-gjcv-465w

@thesamesam basically, there should be a glsa advisory here, but I don't know how to publish it.

Signed-off-by: Oz N Tiram oz.tiram@gmail.com

This package doesn't get GLSAs as it's all unstable. A security bug is filed here, and this should be done whenever there are security issues in your package. Security team will handle it from there. Thanks!

Dropped ~x86 due to unkeyworded dev-python/cerberus,
rekeywording pending.

Bug: https://bugs.gentoo.org/830982
Signed-off-by: Oz N Tiram <oz.tiram@gmail.com>
@gentoo-repo-qa-bot
Copy link
Collaborator

Pull request CI report

Report generated at: 2022-01-12 22:35 UTC
Newest commit scanned: 4da5b80
Status: ✅ good

There are existing issues already. Please look into the report to make sure none of them affect the packages in question:
https://qa-reports.gentoo.org/output/gentoo-ci/99a61cb636/output.html

@oz123 oz123 deleted the bump-pipenv-2022-1-8 branch July 10, 2022 04:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
assigned PR successfully assigned to the package maintainer(s). self-maintained The PR changes only packages that are maintained by the submitter (i.e. no need to ask anybody else)
Projects
None yet
4 participants