Patch Python-2.7.18 for vulnerabilities.

git-svn-id: svn://svn.linuxfromscratch.org/BLFS/trunk/BOOK@24419 af4574ff-66df-0310-9fd7-8a98e5e911e0
This commit is contained in:
Ken Moffat 2021-04-01 02:12:34 +00:00
parent 8fa411c8ea
commit 292ff4579d
3 changed files with 30 additions and 11 deletions

View File

@ -1,12 +1,12 @@
<!-- $LastChangedBy$ $Date$ --> <!-- $LastChangedBy$ $Date$ -->
<!ENTITY day "30"> <!-- Always 2 digits --> <!ENTITY day "31"> <!-- Always 2 digits -->
<!ENTITY month "03"> <!-- Always 2 digits --> <!ENTITY month "03"> <!-- Always 2 digits -->
<!ENTITY year "2021"> <!ENTITY year "2021">
<!ENTITY copyrightdate "2001-&year;"> <!ENTITY copyrightdate "2001-&year;">
<!ENTITY copyholder "The BLFS Development Team"> <!ENTITY copyholder "The BLFS Development Team">
<!ENTITY version "&year;-&month;-&day;"> <!ENTITY version "&year;-&month;-&day;">
<!ENTITY releasedate "March 30th, &year;"> <!ENTITY releasedate "March 31st, &year;">
<!ENTITY pubdate "&year;-&month;-&day;"> <!-- metadata req. by TLDP --> <!ENTITY pubdate "&year;-&month;-&day;"> <!-- metadata req. by TLDP -->
<!ENTITY blfs-version "svn"> <!-- svn|[release #] --> <!ENTITY blfs-version "svn"> <!-- svn|[release #] -->
<!ENTITY lfs-version "development"> <!-- x.y|development --> <!ENTITY lfs-version "development"> <!-- x.y|development -->

View File

@ -9,8 +9,8 @@
<!ENTITY python2-download-ftp " "> <!ENTITY python2-download-ftp " ">
<!ENTITY python2-md5sum "fd6cc8ec0a78c44036f825e739f36e5a"> <!ENTITY python2-md5sum "fd6cc8ec0a78c44036f825e739f36e5a">
<!ENTITY python2-size "12.2 MB"> <!ENTITY python2-size "12.2 MB">
<!ENTITY python2-buildsize "134 MB (add 17 MB for tests)"> <!ENTITY python2-buildsize "228 MB (add 17 MB for tests)">
<!ENTITY python2-time "0.7 SBU (Using parallelism=4; add 7.1 SBU for tests)"> <!ENTITY python2-time "0.5 SBU (Using parallelism=4; add 5.9 SBU for tests)">
<!ENTITY python2htmldoc-download-http <!ENTITY python2htmldoc-download-http
"https://docs.python.org/ftp/python/doc/&python2-version;/python-&python2-version;-docs-html.tar.bz2"> "https://docs.python.org/ftp/python/doc/&python2-version;/python-&python2-version;-docs-html.tar.bz2">
@ -92,14 +92,20 @@
<bridgehead renderas="sect3">Additional Downloads</bridgehead> <bridgehead renderas="sect3">Additional Downloads</bridgehead>
<itemizedlist spacing="compact"> <itemizedlist spacing="compact">
<title>Optional HTML Documentation</title>
<listitem> <listitem>
<para> <para>
Download (HTTP): <ulink url="&python2htmldoc-download-http;"/> Required patch:
<ulink url="&patch-root;/Python-&python2-version;-security_fixes-1.patch"/>
</para>
</listitem>
<listitem>
<para>
Optional HTML Documentation: <ulink url="&python2htmldoc-download-http;"/>
</para> </para>
</listitem> </listitem>
</itemizedlist> </itemizedlist>
<bridgehead renderas="sect3">Python 2 Dependencies</bridgehead> <bridgehead renderas="sect3">Python 2 Dependencies</bridgehead>
<!-- <!--
<bridgehead renderas="sect4">Recommended</bridgehead> <bridgehead renderas="sect4">Recommended</bridgehead>
@ -152,14 +158,17 @@
commands: commands:
</para> </para>
<screen><userinput>./configure --prefix=/usr \ <screen><userinput>
--enable-shared \ patch -Np1 -i ../Python-&python2-version;-security_fixes-1.patch &amp;&amp;
--with-system-expat \ ./configure --prefix=/usr \
--with-system-ffi \ --enable-shared \
--enable-unicode=ucs4 &amp;&amp; --with-system-expat \
--with-system-ffi \
--enable-unicode=ucs4 &amp;&amp;
make</userinput></screen> make</userinput></screen>
<para> <para>
If you invoke the tests, they will run through twice.
To test the results, issue: <command>make -k test</command>. To test the results, issue: <command>make -k test</command>.
</para> </para>

View File

@ -41,6 +41,16 @@
</itemizedlist> </itemizedlist>
</listitem> </listitem>
--> -->
<listitem>
<para>March 31st, 2021</para>
<itemizedlist>
<listitem>
<para>[ken] - Patch Python-2.7.18 for security vulnerabilities. Fixes
<ulink url="&blfs-ticket-root;14843">#14843</ulink>.</para>
</listitem>
</itemizedlist>
</listitem>
<listitem> <listitem>
<para>March 30th, 2021</para> <para>March 30th, 2021</para>
<itemizedlist> <itemizedlist>