From: Bernd Kuhls <bernd@kuhls.net>
To: buildroot@buildroot.org
Cc: "Raphaël Mélotte" <raphael.melotte@mind.be>,
"Grzegorz Blach" <grzegorz@blach.pl>,
"Joris Offouga" <offougajoris@gmail.com>,
"James Hilliard" <james.hilliard1@gmail.com>
Subject: [Buildroot] [PATCH 07/18] package/python-filelock: security bump version to 3.20.1
Date: Sat, 20 Dec 2025 22:41:55 +0100 [thread overview]
Message-ID: <20251220214206.1089100-7-bernd@kuhls.net> (raw)
In-Reply-To: <20251220214206.1089100-1-bernd@kuhls.net>
https://github.com/tox-dev/filelock/releases/tag/3.20.1
Fixes CVE-2025-68146: https://github.com/advisories/GHSA-w853-jp5j-5j7f
Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
---
package/python-filelock/python-filelock.hash | 4 ++--
package/python-filelock/python-filelock.mk | 4 ++--
2 files changed, 4 insertions(+), 4 deletions(-)
diff --git a/package/python-filelock/python-filelock.hash b/package/python-filelock/python-filelock.hash
index f47e8fdb5a..30bd3b1c97 100644
--- a/package/python-filelock/python-filelock.hash
+++ b/package/python-filelock/python-filelock.hash
@@ -1,5 +1,5 @@
# md5, sha256 from https://pypi.org/pypi/filelock/json
-md5 0b9c4280769cd87d874711c13adf50bc filelock-3.20.0.tar.gz
-sha256 711e943b4ec6be42e1d4e6690b48dc175c822967466bb31c0c293f34334c13f4 filelock-3.20.0.tar.gz
+md5 273703b56caed22470cda2a528182fef filelock-3.20.1.tar.gz
+sha256 b8360948b351b80f420878d8516519a2204b07aefcdcfd24912a5d33127f188c filelock-3.20.1.tar.gz
# Locally computed sha256 checksums
sha256 88d9b4eb60579c191ec391ca04c16130572d7eedc4a86daa58bf28c6e14c9bcd LICENSE
diff --git a/package/python-filelock/python-filelock.mk b/package/python-filelock/python-filelock.mk
index 8201fb1e66..ec958869a0 100644
--- a/package/python-filelock/python-filelock.mk
+++ b/package/python-filelock/python-filelock.mk
@@ -4,9 +4,9 @@
#
################################################################################
-PYTHON_FILELOCK_VERSION = 3.20.0
+PYTHON_FILELOCK_VERSION = 3.20.1
PYTHON_FILELOCK_SOURCE = filelock-$(PYTHON_FILELOCK_VERSION).tar.gz
-PYTHON_FILELOCK_SITE = https://files.pythonhosted.org/packages/58/46/0028a82567109b5ef6e4d2a1f04a583fb513e6cf9527fcdd09afd817deeb
+PYTHON_FILELOCK_SITE = https://files.pythonhosted.org/packages/a7/23/ce7a1126827cedeb958fc043d61745754464eb56c5937c35bbf2b8e26f34
PYTHON_FILELOCK_SETUP_TYPE = hatch
PYTHON_FILELOCK_LICENSE = Public Domain
PYTHON_FILELOCK_LICENSE_FILES = LICENSE
--
2.47.3
_______________________________________________
buildroot mailing list
buildroot@buildroot.org
https://lists.buildroot.org/mailman/listinfo/buildroot
next prev parent reply other threads:[~2025-12-20 21:43 UTC|newest]
Thread overview: 21+ messages / expand[flat|nested] mbox.gz Atom feed top
2025-12-20 21:41 [Buildroot] [PATCH 01/18] package/python-colorlog: bump version to 6.10.1 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 02/18] package/python-cachetools: bump version to 6.2.4 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 03/18] package/python-crontab: bump version to 3.3.0 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 04/18] package/python-docutils: bump version to 0.22.4 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 05/18] package/python-dtschema: bump version to 2025.12 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 06/18] package/python-fastapi: bump version to 0.126.0 Bernd Kuhls
2025-12-20 21:41 ` Bernd Kuhls [this message]
2025-12-20 21:41 ` [Buildroot] [PATCH 08/18] package/python-flask-jsonrpc: bump version to 4.0.0 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 09/18] package/python-fonttools: bump version to 4.61.1 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 10/18] package/python-google-auth: bump version to 2.45.0 Bernd Kuhls
2025-12-20 21:41 ` [Buildroot] [PATCH 11/18] package/python-grpclib: bump version to 0.4.9 Bernd Kuhls
2025-12-20 21:42 ` [Buildroot] [PATCH 12/18] package/python-incremental: bump version to 24.11.0 Bernd Kuhls
2025-12-20 21:42 ` [Buildroot] [PATCH 13/18] package/python-boto3: bump version to 1.42.14 Bernd Kuhls
2025-12-20 21:42 ` [Buildroot] [PATCH 14/18] package/python-botocore: " Bernd Kuhls
2025-12-20 21:42 ` [Buildroot] [PATCH 15/18] package/python-iwlib: bump version to 1.7.0 Bernd Kuhls
2025-12-21 22:11 ` Julien Olivain via buildroot
2025-12-20 21:42 ` [Buildroot] [PATCH 16/18] package/python-markupsafe: bump version to 3.0.3 Bernd Kuhls
2025-12-20 21:42 ` [Buildroot] [PATCH 17/18] package/python-multipart: bump version to 0.0.21 Bernd Kuhls
2026-03-06 19:52 ` Thomas Perale via buildroot
2025-12-20 21:42 ` [Buildroot] [PATCH 18/18] package/python-paramiko: bump version to 4.0.0 Bernd Kuhls
2025-12-21 22:14 ` [Buildroot] [PATCH 01/18] package/python-colorlog: bump version to 6.10.1 Julien Olivain via buildroot
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20251220214206.1089100-7-bernd@kuhls.net \
--to=bernd@kuhls.net \
--cc=buildroot@buildroot.org \
--cc=grzegorz@blach.pl \
--cc=james.hilliard1@gmail.com \
--cc=offougajoris@gmail.com \
--cc=raphael.melotte@mind.be \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox