Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 15 Jan 2019 12:21:08 +0000 (UTC)
From:      Steve Wills <swills@FreeBSD.org>
To:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   svn commit: r490366 - in head/net-im/py-matrix-synapse: . files
Message-ID:  <201901151221.x0FCL9a3095608@repo.freebsd.org>

next in thread | raw e-mail | index | archive | help
Author: swills
Date: Tue Jan 15 12:21:08 2019
New Revision: 490366
URL: https://svnweb.freebsd.org/changeset/ports/490366

Log:
  net-im/py-matrix-synapse: update to 0.34.1.1, fix CVE-2019-5885
  
  PR:		234828
  Submitted by:	Sascha Biberhofer <ports@skyforge.at> (maintainer)
  MFH:		2019Q1
  Security:	383931ba-1818-11e9-92ea-448a5b29e8a9

Added:
  head/net-im/py-matrix-synapse/files/patch-python_dependencies.py   (contents, props changed)
Modified:
  head/net-im/py-matrix-synapse/Makefile   (contents, props changed)
  head/net-im/py-matrix-synapse/distinfo   (contents, props changed)

Modified: head/net-im/py-matrix-synapse/Makefile
==============================================================================
--- head/net-im/py-matrix-synapse/Makefile	Tue Jan 15 12:20:43 2019	(r490365)
+++ head/net-im/py-matrix-synapse/Makefile	Tue Jan 15 12:21:08 2019	(r490366)
@@ -3,7 +3,7 @@
 
 PORTNAME=	matrix-synapse
 DISTVERSIONPREFIX=	v
-DISTVERSION=	0.34.0
+DISTVERSION=	0.34.1.1
 CATEGORIES=	net-im python
 PKGNAMEPREFIX=	${PYTHON_PKGNAMEPREFIX}
 
@@ -34,9 +34,9 @@ RUN_DEPENDS=	${PYTHON_PKGNAMEPREFIX}jsonschema>=2.5.1:
 		${PYTHON_PKGNAMEPREFIX}psutil>=2.0.0:sysutils/py-psutil@${PY_FLAVOR} \
 		${PYTHON_PKGNAMEPREFIX}pysaml2>=4.0.2:security/py-pysaml2@${PY_FLAVOR} \
 		${PYTHON_PKGNAMEPREFIX}pymacaroons-pynacl>=0.9.3:security/py-pymacaroons-pynacl@${PY_FLAVOR} \
-		${PYTHON_PKGNAMEPREFIX}msgpack>=0.3.0:devel/py-msgpack@${PY_FLAVOR} \
+		${PYTHON_PKGNAMEPREFIX}msgpack>=0.4.2:devel/py-msgpack@${PY_FLAVOR} \
 		${PYTHON_PKGNAMEPREFIX}phonenumbers>=8.2.0:devel/py-phonenumbers@${PY_FLAVOR} \
-		${PYTHON_PKGNAMEPREFIX}six>0:devel/py-six@${PY_FLAVOR} \
+		${PYTHON_PKGNAMEPREFIX}six>=1.10:devel/py-six@${PY_FLAVOR} \
 		${PYTHON_PKGNAMEPREFIX}prometheus-client>=0.2.0:net-mgmt/py-prometheus-client@${PY_FLAVOR} \
 		${PYTHON_PKGNAMEPREFIX}attrs>16.0.0:devel/py-attrs@${PY_FLAVOR} \
 		${PYTHON_PKGNAMEPREFIX}netaddr>=0.7.18:net/py-netaddr@${PY_FLAVOR}

Modified: head/net-im/py-matrix-synapse/distinfo
==============================================================================
--- head/net-im/py-matrix-synapse/distinfo	Tue Jan 15 12:20:43 2019	(r490365)
+++ head/net-im/py-matrix-synapse/distinfo	Tue Jan 15 12:21:08 2019	(r490366)
@@ -1,3 +1,3 @@
-TIMESTAMP = 1545392934
-SHA256 (matrix-org-synapse-v0.34.0_GH0.tar.gz) = e0e380a60668738dacb9ce944d45af19367dc3f7e502a6e649898e9b6d81b8dc
-SIZE (matrix-org-synapse-v0.34.0_GH0.tar.gz) = 1124109
+TIMESTAMP = 1547138548
+SHA256 (matrix-org-synapse-v0.34.1.1_GH0.tar.gz) = bfc1997c3a8dc48eb9eb02956df6a24ad8337e4eac0faa13cb581d3a694825f7
+SIZE (matrix-org-synapse-v0.34.1.1_GH0.tar.gz) = 1131071

Added: head/net-im/py-matrix-synapse/files/patch-python_dependencies.py
==============================================================================
--- /dev/null	00:00:00 1970	(empty, because file is newly added)
+++ head/net-im/py-matrix-synapse/files/patch-python_dependencies.py	Tue Jan 15 12:21:08 2019	(r490366)
@@ -0,0 +1,11 @@
+--- synapse/python_dependencies.py.orig	2019-01-10 17:51:27.362204447 +0100
++++ synapse/python_dependencies.py	2019-01-10 17:51:47.559224870 +0100
+@@ -58,7 +58,7 @@
+     "six>=1.10",
+     # prometheus_client 0.4.0 changed the format of counter metrics
+     # (cf https://github.com/matrix-org/synapse/issues/4001)
+-    "prometheus_client>=0.0.18,<0.4.0",
++    "prometheus_client>=0.0.18",
+     # we use attr.s(slots), which arrived in 16.0.0
+     "attrs>=16.0.0",
+     "netaddr>=0.7.18",



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201901151221.x0FCL9a3095608>