← Back to team overview

launchpad-reviewers team mailing list archive

[Merge] ~pelpsi/lp-signing/+git/dependencies:gunicorn-upgrade-HTTP-request-smuggling-vulnerability into lp-signing:master

 

Simone Pelosi has proposed merging ~pelpsi/lp-signing/+git/dependencies:gunicorn-upgrade-HTTP-request-smuggling-vulnerability into lp-signing:master.

Commit message:
Upgraded gunicorn to fix HTTP request smuggling vulnerability

A penetration test found that our gunicorn version is vulnerable, version 20.1.0 should be safe.

Requested reviews:
  Launchpad code reviewers (launchpad-reviewers)

For more details, see:
https://code.launchpad.net/~pelpsi/lp-signing/+git/dependencies/+merge/440156
-- 
Your team Launchpad code reviewers is requested to review the proposed merge of ~pelpsi/lp-signing/+git/dependencies:gunicorn-upgrade-HTTP-request-smuggling-vulnerability into lp-signing:master.
diff --git a/Click-7.0-py2.py3-none-any.whl b/Click-7.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..284d6aa
Binary files /dev/null and b/Click-7.0-py2.py3-none-any.whl differ
diff --git a/Flask-1.0.2-py2.py3-none-any.whl b/Flask-1.0.2-py2.py3-none-any.whl
new file mode 100644
index 0000000..bd2786c
Binary files /dev/null and b/Flask-1.0.2-py2.py3-none-any.whl differ
diff --git a/Flask_Storm-0.2.0-py2.py3-none-any.whl b/Flask_Storm-0.2.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..0843cbb
Binary files /dev/null and b/Flask_Storm-0.2.0-py2.py3-none-any.whl differ
diff --git a/Flask_Storm-1.0.0-py2.py3-none-any.whl b/Flask_Storm-1.0.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..4d11f93
Binary files /dev/null and b/Flask_Storm-1.0.0-py2.py3-none-any.whl differ
diff --git a/Jinja2-2.10-py2.py3-none-any.whl b/Jinja2-2.10-py2.py3-none-any.whl
new file mode 100644
index 0000000..7bc4e35
Binary files /dev/null and b/Jinja2-2.10-py2.py3-none-any.whl differ
diff --git a/MarkupSafe-1.1.0-cp36-cp36m-manylinux1_x86_64.whl b/MarkupSafe-1.1.0-cp36-cp36m-manylinux1_x86_64.whl
new file mode 100644
index 0000000..c8d604e
Binary files /dev/null and b/MarkupSafe-1.1.0-cp36-cp36m-manylinux1_x86_64.whl differ
diff --git a/PyNaCl-1.3.0-cp34-abi3-manylinux1_x86_64.whl b/PyNaCl-1.3.0-cp34-abi3-manylinux1_x86_64.whl
new file mode 100644
index 0000000..13b196e
Binary files /dev/null and b/PyNaCl-1.3.0-cp34-abi3-manylinux1_x86_64.whl differ
diff --git a/PyYAML-3.13-cp36-cp36m-linux_x86_64.whl b/PyYAML-3.13-cp36-cp36m-linux_x86_64.whl
new file mode 100644
index 0000000..16f2f0a
Binary files /dev/null and b/PyYAML-3.13-cp36-cp36m-linux_x86_64.whl differ
diff --git a/Werkzeug-0.14.1-py2.py3-none-any.whl b/Werkzeug-0.14.1-py2.py3-none-any.whl
new file mode 100644
index 0000000..865d524
Binary files /dev/null and b/Werkzeug-0.14.1-py2.py3-none-any.whl differ
diff --git a/acceptable-0.21-py2.py3-none-any.whl b/acceptable-0.21-py2.py3-none-any.whl
new file mode 100644
index 0000000..91639a7
Binary files /dev/null and b/acceptable-0.21-py2.py3-none-any.whl differ
diff --git a/argparse-1.4.0-py2.py3-none-any.whl b/argparse-1.4.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..dfef51d
Binary files /dev/null and b/argparse-1.4.0-py2.py3-none-any.whl differ
diff --git a/blinker-1.4-cp36-none-any.whl b/blinker-1.4-cp36-none-any.whl
new file mode 100644
index 0000000..f48a094
Binary files /dev/null and b/blinker-1.4-cp36-none-any.whl differ
diff --git a/certifi-2019.11.28-py2.py3-none-any.whl b/certifi-2019.11.28-py2.py3-none-any.whl
new file mode 100644
index 0000000..1ab6713
Binary files /dev/null and b/certifi-2019.11.28-py2.py3-none-any.whl differ
diff --git a/cffi-1.13.2-cp36-cp36m-manylinux1_x86_64.whl b/cffi-1.13.2-cp36-cp36m-manylinux1_x86_64.whl
new file mode 100644
index 0000000..b48e6cd
Binary files /dev/null and b/cffi-1.13.2-cp36-cp36m-manylinux1_x86_64.whl differ
diff --git a/chardet-3.0.4-py2.py3-none-any.whl b/chardet-3.0.4-py2.py3-none-any.whl
new file mode 100644
index 0000000..d276977
Binary files /dev/null and b/chardet-3.0.4-py2.py3-none-any.whl differ
diff --git a/coverage-4.5.4-cp36-cp36m-manylinux1_x86_64.whl b/coverage-4.5.4-cp36-cp36m-manylinux1_x86_64.whl
new file mode 100644
index 0000000..d6da01c
Binary files /dev/null and b/coverage-4.5.4-cp36-cp36m-manylinux1_x86_64.whl differ
diff --git a/cryptography-2.8-cp34-abi3-manylinux2010_x86_64.whl b/cryptography-2.8-cp34-abi3-manylinux2010_x86_64.whl
new file mode 100644
index 0000000..886a3f0
Binary files /dev/null and b/cryptography-2.8-cp34-abi3-manylinux2010_x86_64.whl differ
diff --git a/entrypoints-0.3-py2.py3-none-any.whl b/entrypoints-0.3-py2.py3-none-any.whl
new file mode 100644
index 0000000..fbd579d
Binary files /dev/null and b/entrypoints-0.3-py2.py3-none-any.whl differ
diff --git a/extras-1.0.0-py2.py3-none-any.whl b/extras-1.0.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..8f31ed7
Binary files /dev/null and b/extras-1.0.0-py2.py3-none-any.whl differ
diff --git a/fakesleep-0.1-cp36-none-any.whl b/fakesleep-0.1-cp36-none-any.whl
new file mode 100644
index 0000000..236e4c2
Binary files /dev/null and b/fakesleep-0.1-cp36-none-any.whl differ
diff --git a/fixtures-3.0.0-py2.py3-none-any.whl b/fixtures-3.0.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..e34655b
Binary files /dev/null and b/fixtures-3.0.0-py2.py3-none-any.whl differ
diff --git a/flake8-3.7.9-py2.py3-none-any.whl b/flake8-3.7.9-py2.py3-none-any.whl
new file mode 100644
index 0000000..285885f
Binary files /dev/null and b/flake8-3.7.9-py2.py3-none-any.whl differ
diff --git a/future-0.16.0-cp36-none-any.whl b/future-0.16.0-cp36-none-any.whl
new file mode 100644
index 0000000..9982e88
Binary files /dev/null and b/future-0.16.0-cp36-none-any.whl differ
diff --git a/gunicorn-19.9.0-py2.py3-none-any.whl b/gunicorn-19.9.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..aaa29f4
Binary files /dev/null and b/gunicorn-19.9.0-py2.py3-none-any.whl differ
diff --git a/gunicorn-20.1.0.tar.gz b/gunicorn-20.1.0.tar.gz
new file mode 100644
index 0000000..b5da493
Binary files /dev/null and b/gunicorn-20.1.0.tar.gz differ
diff --git a/idna-2.8-py2.py3-none-any.whl b/idna-2.8-py2.py3-none-any.whl
new file mode 100644
index 0000000..95cb228
Binary files /dev/null and b/idna-2.8-py2.py3-none-any.whl differ
diff --git a/iso8601-0.1.12.tar.gz b/iso8601-0.1.12.tar.gz
new file mode 100644
index 0000000..ef9f015
Binary files /dev/null and b/iso8601-0.1.12.tar.gz differ
diff --git a/itsdangerous-1.1.0-py2.py3-none-any.whl b/itsdangerous-1.1.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..fa8532d
Binary files /dev/null and b/itsdangerous-1.1.0-py2.py3-none-any.whl differ
diff --git a/jsonschema-2.6.0-py2.py3-none-any.whl b/jsonschema-2.6.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..b237c6c
Binary files /dev/null and b/jsonschema-2.6.0-py2.py3-none-any.whl differ
diff --git a/lazr.enum-1.2-cp36-none-any.whl b/lazr.enum-1.2-cp36-none-any.whl
new file mode 100644
index 0000000..81cfbcf
Binary files /dev/null and b/lazr.enum-1.2-cp36-none-any.whl differ
diff --git a/lazr_postgresql-0.0.4-py2.py3-none-any.whl b/lazr_postgresql-0.0.4-py2.py3-none-any.whl
new file mode 100644
index 0000000..2982b8e
Binary files /dev/null and b/lazr_postgresql-0.0.4-py2.py3-none-any.whl differ
diff --git a/linecache2-1.0.0-py2.py3-none-any.whl b/linecache2-1.0.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..06a8743
Binary files /dev/null and b/linecache2-1.0.0-py2.py3-none-any.whl differ
diff --git a/mccabe-0.6.1-py2.py3-none-any.whl b/mccabe-0.6.1-py2.py3-none-any.whl
new file mode 100644
index 0000000..2ffd042
Binary files /dev/null and b/mccabe-0.6.1-py2.py3-none-any.whl differ
diff --git a/pbr-5.4.4-py2.py3-none-any.whl b/pbr-5.4.4-py2.py3-none-any.whl
new file mode 100644
index 0000000..13e8aaf
Binary files /dev/null and b/pbr-5.4.4-py2.py3-none-any.whl differ
diff --git a/pip-19.0.2-py2.py3-none-any.whl b/pip-19.0.2-py2.py3-none-any.whl
new file mode 100644
index 0000000..0d4d0aa
Binary files /dev/null and b/pip-19.0.2-py2.py3-none-any.whl differ
diff --git a/psycopg2-2.7.7-cp36-cp36m-manylinux1_x86_64.whl b/psycopg2-2.7.7-cp36-cp36m-manylinux1_x86_64.whl
new file mode 100644
index 0000000..679b045
Binary files /dev/null and b/psycopg2-2.7.7-cp36-cp36m-manylinux1_x86_64.whl differ
diff --git a/pycodestyle-2.5.0-py2.py3-none-any.whl b/pycodestyle-2.5.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..130af71
Binary files /dev/null and b/pycodestyle-2.5.0-py2.py3-none-any.whl differ
diff --git a/pycparser-2.19-py2.py3-none-any.whl b/pycparser-2.19-py2.py3-none-any.whl
new file mode 100644
index 0000000..118e6c6
Binary files /dev/null and b/pycparser-2.19-py2.py3-none-any.whl differ
diff --git a/pyflakes-2.1.1-py2.py3-none-any.whl b/pyflakes-2.1.1-py2.py3-none-any.whl
new file mode 100644
index 0000000..dc0386e
Binary files /dev/null and b/pyflakes-2.1.1-py2.py3-none-any.whl differ
diff --git a/python_mimeparse-1.6.0-py2.py3-none-any.whl b/python_mimeparse-1.6.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..e8ec9e1
Binary files /dev/null and b/python_mimeparse-1.6.0-py2.py3-none-any.whl differ
diff --git a/pytz-2019.3-py2.py3-none-any.whl b/pytz-2019.3-py2.py3-none-any.whl
new file mode 100644
index 0000000..427074b
Binary files /dev/null and b/pytz-2019.3-py2.py3-none-any.whl differ
diff --git a/raven-6.10.0-py2.py3-none-any.whl b/raven-6.10.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..b1a97a4
Binary files /dev/null and b/raven-6.10.0-py2.py3-none-any.whl differ
diff --git a/requests-2.22.0-py2.py3-none-any.whl b/requests-2.22.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..6cc9f19
Binary files /dev/null and b/requests-2.22.0-py2.py3-none-any.whl differ
diff --git a/requests_mock-1.7.0-py2.py3-none-any.whl b/requests_mock-1.7.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..aadddf8
Binary files /dev/null and b/requests_mock-1.7.0-py2.py3-none-any.whl differ
diff --git a/setuptools-42.0.2-py2.py3-none-any.whl b/setuptools-42.0.2-py2.py3-none-any.whl
new file mode 100644
index 0000000..bc642d4
Binary files /dev/null and b/setuptools-42.0.2-py2.py3-none-any.whl differ
diff --git a/six-1.13.0-py2.py3-none-any.whl b/six-1.13.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..4aa0182
Binary files /dev/null and b/six-1.13.0-py2.py3-none-any.whl differ
diff --git a/sqlparse-0.2.4-py2.py3-none-any.whl b/sqlparse-0.2.4-py2.py3-none-any.whl
new file mode 100644
index 0000000..1a55b62
Binary files /dev/null and b/sqlparse-0.2.4-py2.py3-none-any.whl differ
diff --git a/statsd-3.3.0-py2.py3-none-any.whl b/statsd-3.3.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..a8a4c34
Binary files /dev/null and b/statsd-3.3.0-py2.py3-none-any.whl differ
diff --git a/storm-0.22-cp36-cp36m-linux_x86_64.whl b/storm-0.22-cp36-cp36m-linux_x86_64.whl
new file mode 100644
index 0000000..bce73a8
Binary files /dev/null and b/storm-0.22-cp36-cp36m-linux_x86_64.whl differ
diff --git a/systemfixtures-0.6.7-py2.py3-none-any.whl b/systemfixtures-0.6.7-py2.py3-none-any.whl
new file mode 100644
index 0000000..a183ae6
Binary files /dev/null and b/systemfixtures-0.6.7-py2.py3-none-any.whl differ
diff --git a/talisker-0.11.1-py3-none-any.whl b/talisker-0.11.1-py3-none-any.whl
new file mode 100644
index 0000000..1a67988
Binary files /dev/null and b/talisker-0.11.1-py3-none-any.whl differ
diff --git a/testresources-2.0.1-py2.py3-none-any.whl b/testresources-2.0.1-py2.py3-none-any.whl
new file mode 100644
index 0000000..923c512
Binary files /dev/null and b/testresources-2.0.1-py2.py3-none-any.whl differ
diff --git a/testtools-2.3.0-py2.py3-none-any.whl b/testtools-2.3.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..fbfa7f5
Binary files /dev/null and b/testtools-2.3.0-py2.py3-none-any.whl differ
diff --git a/traceback2-1.4.0-py2.py3-none-any.whl b/traceback2-1.4.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..c3638d3
Binary files /dev/null and b/traceback2-1.4.0-py2.py3-none-any.whl differ
diff --git a/unittest2-1.1.0-py2.py3-none-any.whl b/unittest2-1.1.0-py2.py3-none-any.whl
new file mode 100644
index 0000000..00bca37
Binary files /dev/null and b/unittest2-1.1.0-py2.py3-none-any.whl differ
diff --git a/urllib3-1.25.7-py2.py3-none-any.whl b/urllib3-1.25.7-py2.py3-none-any.whl
new file mode 100644
index 0000000..2791683
Binary files /dev/null and b/urllib3-1.25.7-py2.py3-none-any.whl differ
diff --git a/wheel-0.33.1-py2.py3-none-any.whl b/wheel-0.33.1-py2.py3-none-any.whl
new file mode 100644
index 0000000..676d746
Binary files /dev/null and b/wheel-0.33.1-py2.py3-none-any.whl differ
diff --git a/zope.event-4.4-py2.py3-none-any.whl b/zope.event-4.4-py2.py3-none-any.whl
new file mode 100644
index 0000000..ead3325
Binary files /dev/null and b/zope.event-4.4-py2.py3-none-any.whl differ
diff --git a/zope.interface-4.7.1-cp36-cp36m-linux_x86_64.whl b/zope.interface-4.7.1-cp36-cp36m-linux_x86_64.whl
new file mode 100644
index 0000000..4319c2b
Binary files /dev/null and b/zope.interface-4.7.1-cp36-cp36m-linux_x86_64.whl differ
diff --git a/zope.interface-4.7.1-cp36-cp36m-manylinux2010_x86_64.whl b/zope.interface-4.7.1-cp36-cp36m-manylinux2010_x86_64.whl
new file mode 100644
index 0000000..d59fe45
Binary files /dev/null and b/zope.interface-4.7.1-cp36-cp36m-manylinux2010_x86_64.whl differ
diff --git a/zope.interface-4.7.1.tar.gz b/zope.interface-4.7.1.tar.gz
new file mode 100644
index 0000000..5cf25c7
Binary files /dev/null and b/zope.interface-4.7.1.tar.gz differ
diff --git a/zope.schema-4.9.3-py2.py3-none-any.whl b/zope.schema-4.9.3-py2.py3-none-any.whl
new file mode 100644
index 0000000..09f55cd
Binary files /dev/null and b/zope.schema-4.9.3-py2.py3-none-any.whl differ

Follow ups