Files
meta-openembedded/meta-python/recipes-devtools/python/python3-filelock_3.25.2.bb
T
Devansh Patel edca03fca9 python3-filelock: set CVE_PRODUCT
The inherited python:filelock mapping does not identify the tox-dev source packaged by this recipe, so filelock CVEs are missed.

Use tox-dev:filelock to match the source identity used by NVD and CNA.

Signed-off-by: Devansh Patel <devanshp@cisco.com>
Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
(cherry picked from commit 43fd2c88f1)
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com>
Signed-off-by: Anuj Mittal <anuj.mittal@oss.qualcomm.com>
2026-08-24 12:59:01 +05:30

32 lines
867 B
BlitzBasic

# SPDX-License-Identifier: MIT
# Copyright (C) 2023 iris-GmbH infrared & intelligent sensors
SUMMARY = "A single module, which implements a platform independent file lock in Python, which provides a simple way of inter-process communication"
HOMEPAGE = "https://py-filelock.readthedocs.io/"
LICENSE = "MIT"
LIC_FILES_CHKSUM = "file://LICENSE;md5=2c6acbdf7bb74caa37512c3a5ca6857b"
CVE_PRODUCT = "tox-dev:filelock"
SRC_URI += "file://run-ptest"
SRC_URI[sha256sum] = "b64ece2b38f4ca29dd3e810287aa8c48182bbecd1ae6e9ae126c9b35f1382694"
BBCLASSEXTEND = "native nativesdk"
inherit pypi python_hatchling ptest-python-pytest
DEPENDS += "\
python3-hatch-vcs-native \
"
RDEPENDS:${PN} += " \
python3-core \
python3-logging \
python3-asyncio \
"
RDEPENDS:${PN}-ptest += " \
python3-pytest-asyncio \
python3-pytest-mock \
python3-virtualenv \
"