Thanks to visit codestin.com
Credit goes to github.com

Skip to content

upgrade versions of setup tools #1051

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
wants to merge 1 commit into from

Conversation

sadewa25
Copy link

This upgrade will solved the issues of CVE-2025-47273 which had the high score on vulnerability database.

@ad-m-ss
Copy link

ad-m-ss commented Jun 10, 2025

We do not upgrade setuptools there ( #1012 ), you need to go upstream and ask the Python project.

@tianon tianon closed this Jun 10, 2025
@ns-svemu
Copy link

Hi @ad-m-ss @sadewa25 - I followed the conversation in ( #1012 ) . But setup tools bundle is upgraded to the version >79.0.0 in python ( https://github.com/python/cpython/tree/3.11/Lib/ensurepip/_bundled ). Now is the current PR change valid?

@edmorley
Copy link
Contributor

@ns-svemu Ah good spot! Yeah once those upstream changes are released these images should pick that up automatically (and we can then also optionally simplify the version handling in this repo too). I've written some more here:
#1012 (comment)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants