Skip to content

Conversation

StanFromIreland
Copy link
Member

@StanFromIreland StanFromIreland commented Sep 25, 2025

Copy link
Contributor

@sethmlarson sethmlarson left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The update to the code looks fine, however the tarball checksum and versions of the expat SBOM aren't updated. This wasn't caught automatically (which I've fixed in #139331) but this PR should have the correct values before being backported.

Copy link
Contributor

@sethmlarson sethmlarson left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you!

@gpshead gpshead merged commit 48d0d0d into python:main Sep 27, 2025
50 of 51 checks passed
@miss-islington-app
Copy link

Thanks @StanFromIreland for the PR, and @gpshead for merging it 🌮🎉.. I'm working now to backport this PR to: 3.10, 3.11, 3.12, 3.13, 3.14.
🐍🍒⛏🤖

miss-islington pushed a commit to miss-islington/cpython that referenced this pull request Sep 27, 2025
+ Blurb
+ Update sbom.spdx.json
(cherry picked from commit 48d0d0d)

Co-authored-by: Stan Ulbrych <89152624+StanFromIreland@users.noreply.github.com>
miss-islington pushed a commit to miss-islington/cpython that referenced this pull request Sep 27, 2025
+ Blurb
+ Update sbom.spdx.json
(cherry picked from commit 48d0d0d)

Co-authored-by: Stan Ulbrych <89152624+StanFromIreland@users.noreply.github.com>
@miss-islington-app
Copy link

Sorry, @StanFromIreland and @gpshead, I could not cleanly backport this to 3.12 due to a conflict.
Please backport using cherry_picker on command line.

cherry_picker 48d0d0dd9733eae4935f2ebd31bef786d8074fc8 3.12

@bedevere-app
Copy link

bedevere-app bot commented Sep 27, 2025

GH-139376 is a backport of this pull request to the 3.14 branch.

@bedevere-app bedevere-app bot removed the needs backport to 3.14 bugs and security fixes label Sep 27, 2025
@miss-islington-app
Copy link

Sorry, @StanFromIreland and @gpshead, I could not cleanly backport this to 3.11 due to a conflict.
Please backport using cherry_picker on command line.

cherry_picker 48d0d0dd9733eae4935f2ebd31bef786d8074fc8 3.11

@bedevere-app
Copy link

bedevere-app bot commented Sep 27, 2025

GH-139377 is a backport of this pull request to the 3.13 branch.

@bedevere-app bedevere-app bot removed the needs backport to 3.13 bugs and security fixes label Sep 27, 2025
@miss-islington-app
Copy link

Sorry, @StanFromIreland and @gpshead, I could not cleanly backport this to 3.10 due to a conflict.
Please backport using cherry_picker on command line.

cherry_picker 48d0d0dd9733eae4935f2ebd31bef786d8074fc8 3.10

hugovk pushed a commit that referenced this pull request Sep 27, 2025
gh-139312: Update bundled libexpat to 2.7.3 (GH-139319)

(cherry picked from commit 48d0d0d)

Co-authored-by: Stan Ulbrych <89152624+StanFromIreland@users.noreply.github.com>
gpshead pushed a commit that referenced this pull request Sep 27, 2025
gh-139312: Update bundled libexpat to 2.7.3 (GH-139319)

+ Blurb
+ Update sbom.spdx.json
(cherry picked from commit 48d0d0d)

Co-authored-by: Stan Ulbrych <89152624+StanFromIreland@users.noreply.github.com>
@StanFromIreland StanFromIreland deleted the update-libexpat branch September 27, 2025 08:20
@StanFromIreland
Copy link
Member Author

3.12 backport has to wait for #139026

StanFromIreland added a commit to StanFromIreland/cpython that referenced this pull request Sep 27, 2025
…9319)

(cherry picked from commit 48d0d0d)

# Conflicts:
#	Misc/sbom.spdx.json
@bedevere-app
Copy link

bedevere-app bot commented Sep 27, 2025

GH-139378 is a backport of this pull request to the 3.11 branch.

@bedevere-app bedevere-app bot removed the needs backport to 3.11 only security fixes label Sep 27, 2025
StanFromIreland added a commit to StanFromIreland/cpython that referenced this pull request Sep 27, 2025
@bedevere-app
Copy link

bedevere-app bot commented Sep 27, 2025

GH-139379 is a backport of this pull request to the 3.10 branch.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
needs backport to 3.12 only security fixes
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants