Skip to content

Commit

Permalink
Upgrade to cryptography==41.0.1(and therefor pyopenssl==23.2.0 du…
Browse files Browse the repository at this point in the history
…e to GHSA-5cpq-8wj7-hf2v

This only really impacts pip installs of Salt and the windows onedir
since the linux and macos onedir build every package dependency from
source, not from pre-existing wheels.

Signed-off-by: Pedro Algarvio <[email protected]>
  • Loading branch information
s0undt3ch committed Jul 4, 2023
1 parent 2fa9684 commit 1d7d51f
Show file tree
Hide file tree
Showing 40 changed files with 74 additions and 71 deletions.
3 changes: 3 additions & 0 deletions changelog/64595.security.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
Upgrade to `cryptography==41.0.1`(and therefor `pyopenssl==23.2.0` due to https://github.com/advisories/GHSA-5cpq-8wj7-hf2v

This only really impacts pip installs of Salt and the windows onedir since the linux and macos onedir build every package dependency from source, not from pre-existing wheels.
2 changes: 1 addition & 1 deletion requirements/darwin.txt
Original file line number Diff line number Diff line change
Expand Up @@ -5,7 +5,7 @@
apache-libcloud>=2.4.0
backports.ssl_match_hostname>=3.7.0.1; python_version < '3.7'
cherrypy>=17.4.1
cryptography>=39.0.1
cryptography>=41.0.1
gitpython>=3.1.30; python_version >= '3.7'
idna>=2.8
linode-python>=1.1.1
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.10/cloud.txt
Original file line number Diff line number Diff line change
Expand Up @@ -385,7 +385,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -669,7 +669,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.10/darwin.txt
Original file line number Diff line number Diff line change
Expand Up @@ -386,7 +386,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/darwin.txt
# adal
Expand Down Expand Up @@ -670,7 +670,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/darwin.txt
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.10/freebsd.txt
Original file line number Diff line number Diff line change
Expand Up @@ -384,7 +384,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.0
# via
# adal
# azure-cosmosdb-table
Expand Down Expand Up @@ -669,7 +669,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/freebsd.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.10/lint.txt
Original file line number Diff line number Diff line change
Expand Up @@ -390,7 +390,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -675,7 +675,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.10/linux.txt
Original file line number Diff line number Diff line change
Expand Up @@ -398,7 +398,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -689,7 +689,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.10/windows.txt
Original file line number Diff line number Diff line change
Expand Up @@ -71,7 +71,7 @@ colorama==0.4.1
# via pytest
contextvars==2.4
# via -r requirements/base.txt
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/windows.txt
# etcd3-py
Expand Down Expand Up @@ -237,7 +237,7 @@ pymssql==2.2.7
# via -r requirements/windows.txt
pymysql==1.0.2
# via -r requirements/windows.txt
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/windows.txt
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.7/cloud.txt
Original file line number Diff line number Diff line change
Expand Up @@ -392,7 +392,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -711,7 +711,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.7/freebsd.txt
Original file line number Diff line number Diff line change
Expand Up @@ -391,7 +391,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.0
# via
# adal
# azure-cosmosdb-table
Expand Down Expand Up @@ -705,7 +705,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/freebsd.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.7/lint.txt
Original file line number Diff line number Diff line change
Expand Up @@ -399,7 +399,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -718,7 +718,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.7/linux.txt
Original file line number Diff line number Diff line change
Expand Up @@ -405,7 +405,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -725,7 +725,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.7/windows.txt
Original file line number Diff line number Diff line change
Expand Up @@ -77,7 +77,7 @@ colorama==0.4.1
# via pytest
contextvars==2.4
# via -r requirements/base.txt
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/windows.txt
# etcd3-py
Expand Down Expand Up @@ -250,7 +250,7 @@ pymssql==2.2.1
# via -r requirements/windows.txt
pymysql==1.0.2
# via -r requirements/windows.txt
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/windows.txt
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.8/cloud.txt
Original file line number Diff line number Diff line change
Expand Up @@ -390,7 +390,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -700,7 +700,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.8/freebsd.txt
Original file line number Diff line number Diff line change
Expand Up @@ -389,7 +389,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.0
# via
# adal
# azure-cosmosdb-table
Expand Down Expand Up @@ -695,7 +695,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/freebsd.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.8/lint.txt
Original file line number Diff line number Diff line change
Expand Up @@ -397,7 +397,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -709,7 +709,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.8/linux.txt
Original file line number Diff line number Diff line change
Expand Up @@ -403,7 +403,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -715,7 +715,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.8/windows.txt
Original file line number Diff line number Diff line change
Expand Up @@ -73,7 +73,7 @@ colorama==0.4.1
# via pytest
contextvars==2.4
# via -r requirements/base.txt
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/windows.txt
# etcd3-py
Expand Down Expand Up @@ -238,7 +238,7 @@ pymssql==2.2.1
# via -r requirements/windows.txt
pymysql==1.0.2
# via -r requirements/windows.txt
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/windows.txt
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.9/cloud.txt
Original file line number Diff line number Diff line change
Expand Up @@ -390,7 +390,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -703,7 +703,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.9/darwin.txt
Original file line number Diff line number Diff line change
Expand Up @@ -391,7 +391,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/darwin.txt
# adal
Expand Down Expand Up @@ -699,7 +699,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/darwin.txt
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.9/freebsd.txt
Original file line number Diff line number Diff line change
Expand Up @@ -389,7 +389,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.0
# via
# adal
# azure-cosmosdb-table
Expand Down Expand Up @@ -698,7 +698,7 @@ pyjwt==2.4.0
# via adal
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/freebsd.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.9/lint.txt
Original file line number Diff line number Diff line change
Expand Up @@ -395,7 +395,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==1.0.15 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -710,7 +710,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.4.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
4 changes: 2 additions & 2 deletions requirements/static/ci/py3.9/linux.txt
Original file line number Diff line number Diff line change
Expand Up @@ -405,7 +405,7 @@ contextvars==2.4
# via -r requirements/base.txt
croniter==0.3.29 ; sys_platform != "win32"
# via -r requirements/static/ci/common.in
cryptography==39.0.2
cryptography==41.0.1
# via
# -r requirements/static/pkg/linux.in
# adal
Expand Down Expand Up @@ -720,7 +720,7 @@ pymysql==1.0.2 ; python_version > "3.5"
# via -r requirements/static/ci/linux.in
pynacl==1.3.0
# via paramiko
pyopenssl==23.0.0
pyopenssl==23.2.0
# via
# -r requirements/static/pkg/linux.in
# etcd3-py
Expand Down
Loading

0 comments on commit 1d7d51f

Please sign in to comment.