Skip to content

py3-pipenv/2024.0.3 package update#29158

Merged
philroche merged 1 commit intomainfrom
wolfictl-79edeb50-b4c6-4981-af70-a992ae50212d
Sep 23, 2024
Merged

py3-pipenv/2024.0.3 package update#29158
philroche merged 1 commit intomainfrom
wolfictl-79edeb50-b4c6-4981-af70-a992ae50212d

Conversation

@octo-sts
Copy link
Copy Markdown
Contributor

@octo-sts octo-sts bot commented Sep 23, 2024

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com>
@octo-sts octo-sts bot added request-version-update request for a newer version of a package automated pr labels Sep 23, 2024
@github-actions
Copy link
Copy Markdown
Contributor

Package py3-pipenv: Click to expand/collapse

Package py3-pipenv:

.PKGINFO metadata:

  (
  	"""
  	# Generated by melange
  	pkgname = py3-pipenv
- 	pkgver = 2024.0.2-r0
+ 	pkgver = 2024.0.3-r0
  	arch = x86_64
- 	size = 21090547
+ 	size = 21457005
  	origin = py3-pipenv
  	pkgdesc = Python Development Workflow for Humans.
  	url = 
- 	commit = 05ae208f86f5b6ce0bef38bd903e77c0ef7c05dc
- 	builddate = 1726368954
+ 	commit = b35be6e0c8f9f1dd16a2a384e0305f68a13ca1a1
  	license = MIT
  	depend = cmd:python3.12
  	... // 3 identical lines
  	depend = py3-virtualenv
  	depend = python-3
- 	provides = cmd:pipenv-resolver=2024.0.2-r0
- 	provides = cmd:pipenv=2024.0.2-r0
- 	datahash = fa3886cdca12b951359d5c0947e92536347244ae67525928ca22b0719753f9a5
+ 	provides = cmd:pipenv-resolver=2024.0.3-r0
+ 	provides = cmd:pipenv=2024.0.3-r0
+ 	datahash = 095627a1b1f33956f9b0c8e431a97779adc870c6d2c8a8fe1ec033247f38f9ac
  	"""
  )

Added: /usr/lib/python3.12/site-packages/packaging/init.py
Added: /usr/lib/python3.12/site-packages/packaging/pycache/init.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/_elffile.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/_manylinux.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/_musllinux.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/_parser.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/_structures.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/_tokenizer.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/markers.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/metadata.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/requirements.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/specifiers.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/tags.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/utils.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/pycache/version.cpython-312.pyc
Added: /usr/lib/python3.12/site-packages/packaging/_elffile.py
Added: /usr/lib/python3.12/site-packages/packaging/_manylinux.py
Added: /usr/lib/python3.12/site-packages/packaging/_musllinux.py
Added: /usr/lib/python3.12/site-packages/packaging/_parser.py
Added: /usr/lib/python3.12/site-packages/packaging/_structures.py
Added: /usr/lib/python3.12/site-packages/packaging/_tokenizer.py
Added: /usr/lib/python3.12/site-packages/packaging/markers.py
Added: /usr/lib/python3.12/site-packages/packaging/metadata.py
Added: /usr/lib/python3.12/site-packages/packaging/py.typed
Added: /usr/lib/python3.12/site-packages/packaging/requirements.py
Added: /usr/lib/python3.12/site-packages/packaging/specifiers.py
Added: /usr/lib/python3.12/site-packages/packaging/tags.py
Added: /usr/lib/python3.12/site-packages/packaging/utils.py
Added: /usr/lib/python3.12/site-packages/packaging/version.py
Added: /usr/lib/python3.12/site-packages/packaging-24.1.dist-info/INSTALLER
Added: /usr/lib/python3.12/site-packages/packaging-24.1.dist-info/LICENSE
Added: /usr/lib/python3.12/site-packages/packaging-24.1.dist-info/LICENSE.APACHE
Added: /usr/lib/python3.12/site-packages/packaging-24.1.dist-info/LICENSE.BSD
Added: /usr/lib/python3.12/site-packages/packaging-24.1.dist-info/METADATA
Added: /usr/lib/python3.12/site-packages/packaging-24.1.dist-info/RECORD
Added: /usr/lib/python3.12/site-packages/packaging-24.1.dist-info/WHEEL
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/INSTALLER
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/LICENSE
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/METADATA
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/NOTICES
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/RECORD
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/REQUESTED
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/WHEEL
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/direct_url.json
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/entry_points.txt
Added: /usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/top_level.txt
Modified: /usr/lib/python3.12/site-packages/pipenv/pycache/version.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/pycache/environment.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/pycache/project.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/version.py
Modified: /usr/lib/python3.12/site-packages/pipenv/environment.py
Modified: /usr/lib/python3.12/site-packages/pipenv/pipenv.1
Modified: /usr/lib/python3.12/site-packages/pipenv/project.py
Modified: /usr/lib/python3.12/site-packages/pipenv/routines/pycache/install.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/routines/pycache/uninstall.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/routines/install.py
Modified: /usr/lib/python3.12/site-packages/pipenv/routines/uninstall.py
Modified: /usr/lib/python3.12/site-packages/pipenv/utils/pycache/dependencies.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/utils/pycache/toml.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/utils/pycache/virtualenv.cpython-312.pyc
Modified: /usr/lib/python3.12/site-packages/pipenv/utils/dependencies.py
Modified: /usr/lib/python3.12/site-packages/pipenv/utils/toml.py
Modified: /usr/lib/python3.12/site-packages/pipenv/utils/virtualenv.py
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/INSTALLER
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/LICENSE
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/METADATA
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/NOTICES
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/RECORD
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/REQUESTED
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/WHEEL
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/direct_url.json
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/entry_points.txt
Deleted: /usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/top_level.txt

bincapz found differences: Click to expand/collapse

Deleted: py3-pipenv/usr/lib/python3.12/site-packages/pipenv-2024.0.2.dist-info/direct_url.json [✅ LOW]

RISK KEY DESCRIPTION EVIDENCE
-LOW ref/path/file/url file url file:///home

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/metadata.py [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM net/download download files core-metadata-download-url
download_url
+MEDIUM process/name/get get the current process name process_name

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/_musllinux.py [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM exec/program execute external program subprocess.PIPE, text
subprocess.run([ld], stderr
+MEDIUM process/executable_path gets executable associated to this process sys.executable

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/_manylinux.py [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM process/executable_path gets executable associated to this process sys.executable
+MEDIUM process/name/get get the current process name process_name
+MEDIUM ref/site/download http dropper url https://github.com/python/cpython/blob/fcf1d003bf4f0100c/Lib/platform.py
+LOW ref/site/url contains embedded HTTPS URLs https://github.com/python/cpython/blob/fcf1d003bf4f0100c/Lib/platform.py
https://sourceware.org/bugzilla/show_bug.cgi?id=24636
https://static.docs.arm.com/ihi0044/g/aaelf32.pdf

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/_elffile.py [✅ LOW]

RISK KEY DESCRIPTION EVIDENCE
+LOW ref/site/url contains embedded HTTPS URLs https://gist.github.com/lyssdod/f51579ae8d93c8657a5564aefc2ffbca
https://refspecs.linuxfoundation.org/elf/gabi4

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/specifiers.py [✅ LOW]

RISK KEY DESCRIPTION EVIDENCE
+LOW ref/site/url contains embedded HTTPS URLs python/mypy#13475

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/tags.py [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM evasion/single_line_imports imports built-in and executes more code on the same line import platform;
+MEDIUM exec/program execute external program subprocess.PIPE,
subprocess.run(
+MEDIUM process/executable_path gets executable associated to this process sys.executable
+LOW ref/site/url contains embedded HTTPS URLs pypa/pip#3383

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/_parser.py [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM techniques/code_eval evaluate code dynamically using eval() eval(python
+LOW fd/read reads from a file handle Op(tokenizer.read()
append(tokenizer.read()
process_env_var(tokenizer.read()
process_python_str(tokenizer.read()

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/markers.py [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM exec/shell_command execute a shell command system
+MEDIUM kernel/platform system platform identification sys.platform
+LOW ref/site/url contains embedded HTTPS URLs https://peps.python.org/pep-0685/

Added: py3-pipenv/usr/lib/python3.12/site-packages/pipenv-2024.0.3.dist-info/direct_url.json [✅ LOW]

RISK KEY DESCRIPTION EVIDENCE
+LOW ref/path/file/url file url file:///home

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/init.py [✅ LOW]

RISK KEY DESCRIPTION EVIDENCE
+LOW ref/site/url contains embedded HTTPS URLs https://github.com/pypa/packaging

Added: py3-pipenv/usr/lib/python3.12/site-packages/packaging/_tokenizer.py [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM exec/shell_command execute a shell command system
+LOW fd/read reads from a file handle self.read()

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/routines/install.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_vendor/pyparsing/core.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_internal/commands/search.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_internal/index/collector.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_internal/wheel_builder.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/project.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_internal/locations/_sysconfig.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_internal/self_outdated_check.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_internal/utils/entrypoints.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_internal/req/req_uninstall.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/safety/alerts/github.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/exceptions.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/utils/dependencies.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/vendor/dparse/updater.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_vendor/urllib3/contrib/pyopenssl.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/_vendor/cachecontrol/caches/file_cache.py

Changed: /tmp/wolfictl-apk-29500048/py3-pipenv/usr/lib/python3.12/site-packages/pipenv/patched/pip/main.py

Moved: py3-pipenv/var/lib/db/sbom/py3-pipenv-2024.0.2-r0.spdx.json -> /tmp/wolfictl-apk-29500048/py3-pipenv/var/lib/db/sbom/py3-pipenv-2024.0.3-r0.spdx.json (similarity: 0.99)

@octo-sts octo-sts bot added the bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. label Sep 23, 2024
@octo-sts
Copy link
Copy Markdown
Contributor Author

octo-sts bot commented Sep 23, 2024

Open AI suggestions to solve the build error:

No errors were found in the log file.

@philroche philroche merged commit 0a4c605 into main Sep 23, 2024
@philroche philroche deleted the wolfictl-79edeb50-b4c6-4981-af70-a992ae50212d branch September 23, 2024 07:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

automated pr bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. request-version-update request for a newer version of a package

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants