Change log for requests package in Ubuntu

175 of 75 results
Published in oracular-release
Published in noble-release
Published in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
requests (2.31.0+dfsg-1ubuntu1) mantic; urgency=medium

  * Merge with Debian unstable (LP: #2018104). Remaining changes:
    - d/p/remove-charset-normalizer-dependency.patch: Remove charset-normalizer
      as a dependency of requests (LP #1975541)
  * Dropped changes:
    - d/p/CVE-2023-32681.patch: Unintended leak of Proxy-Authorization header
    [Fixed upstream in 2.31.0]
    - d/p/0002-Fix-tests-with-HTTP-proxy.patch: Fix autopkgtest when
      http_proxy, https_proxy or no_proxy variable is set (LP #1974182)
    [Fixed in 2.31.0+dfsg-1]

 -- Lena Voytek <email address hidden>  Tue, 25 Jul 2023 14:54:56 -0700
Obsolete in kinetic-updates
Obsolete in kinetic-security
requests (2.27.1+dfsg-1ubuntu2.1) kinetic-security; urgency=medium

  * SECURITY UPDATE: Unintended leak of Proxy-Authorization header
    - debian/patches/CVE-2023-32681.patch: don't attach header to redirects
      with an HTTPS destination in requests/sessions.py,
      tests/test_requests.py.
    - CVE-2023-32681

 -- Marc Deslauriers <email address hidden>  Mon, 05 Jun 2023 13:11:16 -0400
Published in jammy-updates
Published in jammy-security
requests (2.25.1+dfsg-2ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Unintended leak of Proxy-Authorization header
    - debian/patches/CVE-2023-32681.patch: don't attach header to redirects
      with an HTTPS destination in requests/sessions.py,
      tests/test_requests.py.
    - CVE-2023-32681

 -- Marc Deslauriers <email address hidden>  Mon, 05 Jun 2023 13:12:33 -0400
Published in lunar-updates
Published in lunar-security
requests (2.28.1+dfsg-1ubuntu1.1) lunar-security; urgency=medium

  * SECURITY UPDATE: Unintended leak of Proxy-Authorization header
    - debian/patches/CVE-2023-32681.patch: don't attach header to redirects
      with an HTTPS destination in requests/sessions.py,
      tests/test_requests.py.
    - CVE-2023-32681

 -- Marc Deslauriers <email address hidden>  Mon, 05 Jun 2023 12:54:33 -0400
Published in focal-updates
Published in focal-security
requests (2.22.0-2ubuntu1.1) focal-security; urgency=medium

  * SECURITY UPDATE: Unintended leak of Proxy-Authorization header
    - debian/patches/CVE-2023-32681.patch: don't attach header to redirects
      with an HTTPS destination in requests/sessions.py,
      tests/test_requests.py.
    - CVE-2023-32681

 -- Marc Deslauriers <email address hidden>  Mon, 05 Jun 2023 13:13:31 -0400
Superseded in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
requests (2.28.1+dfsg-1ubuntu2) mantic; urgency=medium

  * SECURITY UPDATE: Unintended leak of Proxy-Authorization header
    - debian/patches/CVE-2023-32681.patch: don't attach header to redirects
      with an HTTPS destination in requests/sessions.py,
      tests/test_requests.py.
    - CVE-2023-32681

 -- Marc Deslauriers <email address hidden>  Mon, 05 Jun 2023 12:54:33 -0400
Superseded in mantic-release
Published in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
requests (2.28.1+dfsg-1ubuntu1) lunar; urgency=medium

  * Merge with Debian unstable (LP: #1993439). Remaining changes:
    - Fix autopkgtest when http_proxy, https_proxy or no_proxy variable is set
      (LP #1974182)
    - d/p/remove-charset-normalizer-dependency.patch: Remove charset-normalizer
      as a dependency of requests (LP #1975541)

 -- Lena Voytek <email address hidden>  Mon, 28 Nov 2022 15:18:43 -0700
Superseded in lunar-release
Obsolete in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
requests (2.27.1+dfsg-1ubuntu2) kinetic; urgency=medium

  * d/p/remove-charset-normalizer-dependency.patch: Remove charset-normalizer
    as a dependency of requests (LP: #1975541)

Superseded in kinetic-proposed
requests (2.27.1+dfsg-1ubuntu1) kinetic; urgency=medium

  * Fix autopkgtest when http_proxy, https_proxy or no_proxy variable is set
    (LP: #1974182)

 -- Olivier Gayot <email address hidden>  Thu, 19 May 2022 14:14:07 +0200
Superseded in kinetic-proposed
requests (2.27.1+dfsg-1) unstable; urgency=medium

  [ root ]
  * Update standards version to 4.6.0, no changes needed.

  [ Daniele Tricoli ]
  * New upstream version 2.27.1+dfsg
  * Enable tests both at build time and using autopkgtest.
  * Enable salsa pipelines.
  * debian/copyright
    - Update Files-Excluded rule to remove the logo.
    - Update copyright years.
  * debian/patches/0001-Remove-remote-images-traking-code-and-ads.patch
    - Refresh.
  * debian/patches/0002-Temporary-exclude-requests.codes.patch
    - Drop since fixed upstream.
  * debian/control
    - Add python3-pytest, python3-pytest-httpbin, python3-pytest-mock,
      python3-socks and python3-trustme to Build-Depends.
    - Set python3-requests Multi-Arch: foreign. Thanks Elrond for the report.
      (Closes: #985625)

 -- Daniele Tricoli <email address hidden>  Sun, 20 Mar 2022 17:51:34 +0100
Superseded in kinetic-release
Published in jammy-release
Obsolete in impish-release
Obsolete in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
requests (2.25.1+dfsg-2) unstable; urgency=medium

  * debian/control
    - Drop upper bound version for chardet and urllib3. Thanks to sramacher
      and myon for the suggestions. (Closes: #978749)

 -- Daniele Tricoli <email address hidden>  Thu, 31 Dec 2020 17:55:39 +0100
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
requests (2.25.1+dfsg-1ubuntu2) hirsute; urgency=medium

  * Drop upper bound build dependencies.

 -- Matthias Klose <email address hidden>  Thu, 31 Dec 2020 14:28:36 +0100
Superseded in hirsute-proposed
requests (2.25.1+dfsg-1ubuntu1) hirsute; urgency=medium

  * Drop upper bound build dependencies.

 -- Matthias Klose <email address hidden>  Thu, 31 Dec 2020 14:28:36 +0100
Superseded in hirsute-proposed
requests (2.25.1+dfsg-1) unstable; urgency=medium

  * New upstream release.
  * Refresh patches.
  * debian/control
    - Bump chardet << 5.

 -- Daniele Tricoli <email address hidden>  Thu, 31 Dec 2020 03:01:11 +0100

Available diffs

Deleted in hirsute-proposed (Reason: remove uninstallable requests package)
requests (2.25.0+dfsg-2) unstable; urgency=medium

  * debian/patches/0002-Temporary-exclude-requests.codes.patch
    - Temporary exclude requests.codes to make documentation not fail during
      build. (Closes: #978351)
  * debian/control
    - Bump Standards-Version to 4.5.1 (no changes needed).

 -- Daniele Tricoli <email address hidden>  Wed, 30 Dec 2020 01:23:56 +0100

Available diffs

Deleted in hirsute-proposed (Reason: remove uninstallable requests package)
requests (2.25.0+dfsg-1) unstable; urgency=medium

  [ Debian Janitor ]
  * Set upstream metadata fields: Security-Contact.

  [ Daniele Tricoli ]
  * New upstream version 2.25.0+dfsg
  * debian/patches/0001-Remove-remote-images-traking-code-and-ads.patch
    - Refresh.
  * debian/copyright
    - Drop section for konami.js since it's no more distributed by upstream.
  * debian/control
    - Bump python3-urllib3 to << 1.27.

 -- Daniele Tricoli <email address hidden>  Tue, 08 Dec 2020 22:46:34 +0100

Available diffs

Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
requests (2.24.0+dfsg-1) unstable; urgency=medium

  * Team upload.

  [ Ondřej Nový ]
  * d/control: Update Maintainer field with new Debian Python Team
    contact address.
  * d/control: Update Vcs-* fields with new Debian Python Team Salsa
    layout.

  [ Drew Parsons ]
  * New upstream release.
  * debhelper compatibility level 13

 -- Drew Parsons <email address hidden>  Fri, 23 Oct 2020 19:56:50 +0800

Available diffs

Superseded in groovy-release
Published in focal-release
Deleted in focal-proposed (Reason: moved to Release)
requests (2.22.0-2ubuntu1) focal; urgency=medium

  * Drop python2 support, cherry-picked from Debian.

 -- Steve Langasek <email address hidden>  Wed, 22 Apr 2020 19:33:21 -0700
Superseded in hirsute-release
Obsolete in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
requests (2.23.0+dfsg-2) unstable; urgency=medium

  * Drop python2 support; Closes: #938355
  * debian/control
    - suggest -doc in python3-requests, as suggested by Scott Kitterman

 -- Sandro Tosi <email address hidden>  Wed, 01 Apr 2020 09:56:33 -0400
Superseded in focal-release
Deleted in focal-proposed (Reason: moved to Release)
requests (2.22.0-2build1) focal; urgency=medium

  * No-change rebuild to generate dependencies on python2.

 -- Matthias Klose <email address hidden>  Tue, 17 Dec 2019 12:53:37 +0000
Superseded in focal-proposed
requests (2.22.0-2) unstable; urgency=medium

  * Upload to unstable. (Closes: #945978)

 -- Daniele Tricoli <email address hidden>  Thu, 05 Dec 2019 03:09:13 +0100
Superseded in focal-release
Obsolete in eoan-release
Obsolete in disco-release
Deleted in disco-proposed (Reason: moved to release)
requests (2.21.0-1) unstable; urgency=medium

  * New upstream release.
  * debian/control
    - Update to use my debian.org mail address.
    - Bump Standards-Version to 4.3.0 (no changes needed).
    - Bump python-all >= 2.7 in Build-Depends.
  * debian/copyright
    - Update to use my debian.org mail address.
    - Update copyright years.

 -- Daniele Tricoli <email address hidden>  Tue, 12 Feb 2019 01:28:14 +0100

Available diffs

Superseded in disco-release
Deleted in disco-proposed (Reason: moved to release)
requests (2.20.0-2) unstable; urgency=medium

  * Bump python-urllib3 to (<< 1.25) in Build-Depends.
    Thanks to Mattia Rizzolo for the report. (Closes: #911903)

 -- Daniele Tricoli <email address hidden>  Fri, 26 Oct 2018 01:46:46 +0200
Superseded in disco-release
Deleted in disco-proposed (Reason: moved to release)
Obsolete in cosmic-updates
Obsolete in cosmic-security
requests (2.18.4-2ubuntu0.18.10.1) cosmic-security; urgency=medium

  * SECURITY UPDATE: Creadentials through HTTP Authorization header
    - debian/patches/CVE-2018-18074.patch: fix in requests/sessions.py,
      test_requests.py.
    - CVE-2018-18074

 -- <email address hidden> (Leonidas S. Barbosa)  Mon, 22 Oct 2018 09:18:45 -0300
Published in bionic-updates
Published in bionic-security
requests (2.18.4-2ubuntu0.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Creadentials through HTTP Authorization header
    - debian/patches/CVE-2018-18074.patch: fix in requests/sessions.py,
      test_requests.py.
    - CVE-2018-18074

 -- <email address hidden> (Leonidas S. Barbosa)  Thu, 11 Oct 2018 11:45:55 -0300
Published in xenial-updates
Published in xenial-security
requests (2.9.1-3ubuntu0.1) xenial-security; urgency=medium

  * SECURITY UPDATE: Creadentials through HTTP Authorization header
    - debian/patches/CVE-2018-18074.patch: fix in requests/sessions.py,
      test_requests.py.
    - CVE-2018-18074

 -- <email address hidden> (Leonidas S. Barbosa)  Thu, 11 Oct 2018 10:30:18 -0300
Published in trusty-updates
Published in trusty-security
requests (2.2.1-1ubuntu0.4) trusty-security; urgency=medium

  * SECURITY UPDATE: Creadentials through HTTP Authorization header
    - debian/patches/CVE-2018-18074.patch: fix in requests/sessions.py.
    - CVE-2018-18074

 -- <email address hidden> (Leonidas S. Barbosa)  Wed, 10 Oct 2018 13:24:54 -0300
Superseded in disco-release
Obsolete in cosmic-release
Published in bionic-release
Deleted in bionic-proposed (Reason: moved to release)
requests (2.18.4-2) unstable; urgency=medium

  * debian/control
    - Update Vcs-Git and Vcs-Browser to salsa.debian.org.
    - Add awscli (<< 1.11.139) to python3-requests' Breaks. (Closes: #870888)
  * debian/copyright
    - Use secure URI in format field.
    - Update copyright years.

 -- Daniele Tricoli <email address hidden>  Fri, 09 Feb 2018 19:31:10 +0100

Available diffs

Superseded in bionic-release
Deleted in bionic-proposed (Reason: moved to release)
requests (2.18.4-1) unstable; urgency=medium

  * Team upload.
  * New upstream release
  * d/watch: Use https
  * Bump X-Python3-Version to 3.4
  * Bump debhelper compat level to 11
  * Standards-Version is 4.1.3 now (no changes needed)
  * d/watch: Check upstream signature
  * Fixed required version of chardet and urllib3 for new version

 -- Ondřej Nový <email address hidden>  Thu, 04 Jan 2018 15:18:19 +0100

Available diffs

Superseded in bionic-release
Obsolete in artful-release
Deleted in artful-proposed (Reason: moved to release)
requests (2.18.1-1) unstable; urgency=medium

  * New upstream release. (Closes: #856619)
    - No more bundling of dependencies. (Closes: #859504)
  * Drop all patches.
  * Add autodep8 tests.
  * debian/control
    - Bump python{,3}-urllib3 dependencies to (>= 1.21.1) (<< 1.22).
    - Bump Standards-Version to 4.0.0 (no changes needed).
    - Add version constraint for chardet and idna.
    - Add python{,3}-certifi to Build-Depends and Depends.
  * debian/copyright
    - Remove stanzas of no more bundled dependencies.
    - Update copyright years.

 -- Daniele Tricoli <email address hidden>  Fri, 04 Aug 2017 08:13:04 +0200
Superseded in artful-release
Deleted in artful-proposed (Reason: moved to release)
requests (2.18.1-0ubuntu1) artful; urgency=medium

  * New upstream release. (Closes: #856619)
    - No more bundling of dependencies. (Closes: #859504)
  * Drop all patches.
  * Add autodep8 tests.
  * debian/control
    - Bump python{,3}-urllib3 dependencies to (>= 1.21.1) (<< 1.22).
    - Bump Standards-Version to 4.0.0 (no changes needed).
    - Add version constraint for chardet and idna.
    - Add python{,3}-certifi to Build-Depends and Depends.
  * debian/copyright
    - Remove stanzas of no more bundled dependencies.
    - Update copyright years.

 -- Daniele Tricoli <email address hidden>  Wed, 02 Aug 2017 03:09:44 +0200
Superseded in artful-release
Deleted in artful-proposed (Reason: moved to release)
Deleted in zesty-proposed (Reason: Moved to artful-proposed)
requests (2.12.4-1) unstable; urgency=medium

  * New upstream release.

 -- Daniele Tricoli <email address hidden>  Mon, 19 Dec 2016 20:18:04 +0100

Available diffs

Superseded in zesty-proposed
requests (2.12.3-1) unstable; urgency=medium

  * New upstream release.
  * debian/control
    - Bump python{,3}-urllib3 dependencies to (>= 1.19.1) (<< 1.19.2).
    - Remove python{,3}-ndg-httpsclient and python{,3}-pyasn1.
    - Add python{,3}-cryptography and python{,3}-idna.
  * debian/copyright
    - Add stanza for idna.
  * debian/patches/02_populate-install_requires.patch
    - Refresh.
  * debian/patches/use-pip-unbundling.patch
    - Refresh.

 -- Daniele Tricoli <email address hidden>  Tue, 13 Dec 2016 00:34:47 +0100

Available diffs

Superseded in zesty-proposed
requests (2.11.1-1) unstable; urgency=medium

  * New upstream release.
  * debian/control
    - Bump python{,3}-urllib3 dependencies to (>= 1.16) (<< 1.16.1).
  * debian/patches/02_populate-install_requires.patch
    - Refresh.

 -- Daniele Tricoli <email address hidden>  Fri, 09 Sep 2016 00:31:15 +0200
Superseded in artful-release
Obsolete in zesty-release
Obsolete in yakkety-release
Deleted in yakkety-proposed (Reason: moved to release)
requests (2.10.0-2) unstable; urgency=medium

  * debian/patches/use-pip-unbundling.patch
    - Use the same unbundling strategy implemented by pip.

 -- Daniele Tricoli <email address hidden>  Sat, 18 Jun 2016 22:28:05 +0200

Available diffs

Superseded in yakkety-release
Deleted in yakkety-proposed (Reason: moved to release)
requests (2.10.0-1) unstable; urgency=medium

  * New upstream release.
  * debian/control
    - Bump Standards-Version to 3.9.8 (no changes needed).
    - Add python{,3}-socks to Suggests.
    - Bump python{,3}-urllib3 dependencies to (>= 1.15.1) (<< 1.15.2).
  * debian/copyright
    - Update copyright years.
  * debian/patches/02_populate-install_requires.patch
    - Refresh.

 -- Daniele Tricoli <email address hidden>  Fri, 20 May 2016 02:41:59 +0200

Available diffs

Superseded in yakkety-release
Published in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
requests (2.9.1-3) unstable; urgency=medium

  * debian/control
    - Remove python-requests-whl as it's no longer necessary.
    - Remove python3-wheel from Build-Depends.
    - Fix Vcs-Git URI.
    - Bump Standards-Version to 3.9.7 (no changes needed).
    - Bump X-Python3-Version to >= 3.3.
  * debian/copyright
    - Updated copyright years.
  * debian/python-requests-whl.install
    - Remove.
  * debian/rules
    - Remove override_dh_auto_install since we no longer need to
      build the wheel package.

 -- Daniele Tricoli <email address hidden>  Fri, 12 Feb 2016 07:23:58 +0100

Available diffs

Superseded in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
requests (2.9.1-2) unstable; urgency=medium

  * debian/control
    - Tweak fixed dependency on urllib3 1.13.1 to accommodate
      packaging changes, as the version requirement is upstream version
      only. Thanks James Page for report and patch. (Closes: #809485)
    - Use HTTPS scheme for Vcs-Git.

 -- Daniele Tricoli <email address hidden>  Sun, 24 Jan 2016 21:12:17 +0100
Superseded in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
requests (2.9.1-1ubuntu1) xenial; urgency=medium

  * d/control: Tweak fixed dependency on urllib3 1.13.1 to accomodate
    packaging changes, as the version requirement is upstream version
    only.

 -- James Page <email address hidden>  Thu, 31 Dec 2015 07:52:30 +0000
Superseded in xenial-proposed
requests (2.9.1-1) unstable; urgency=medium

  * New upstream release.
  * debian/control
    - Bump python{,3}-urllib3 to = 1.13.1-1 both in Build-Depends and Depends.
      Tighten urllib3 dependency is needed because, otherwise, any programs
      depending to requests through pkgresources will fail. Thanks to Vincent
      Bernat for the report.
  * debian/patches/02_populate-install_requires.patch
    - Refresh. (Closes: #809031)

 -- Daniele Tricoli <email address hidden>  Sun, 27 Dec 2015 13:14:02 +0100

Available diffs

Superseded in xenial-release
Deleted in xenial-proposed (Reason: moved to release)
requests (2.8.1-1) unstable; urgency=medium

  * New upstream release. (Closes: #802760)
  * debian/control
    - Bump python{,3}-urllib3 to >= 1.12 both in Build-Depends and Depends.
  * debian/patches/05_upstream_devendorize.patch
    - Remove because included since version 2.8.0.
  * debian/patches/02_populate-install_requires.patch
    - Populate install_requires for unbundled packages to avoid breakage
      updating urllib3 via pip when requests/urllib3 are already installed
      via the system packages.

 -- Daniele Tricoli <email address hidden>  Sat, 24 Oct 2015 17:46:58 +0200

Available diffs

Superseded in xenial-release
Obsolete in wily-release
Deleted in wily-proposed (Reason: moved to release)
requests (2.7.0-3) unstable; urgency=medium

  [ Barry Warsaw ]
  * debian/patches:
    - 02_use-system-chardet-and-urllib3.patch and
      04_make-requests.packages.urllib3-same-as-urllib3.patch: Removed in
      favor of upstream's pull request #2567
    - 05_upstream_devendorize.patch: Upstream's pull request to better
      support the devendorizing of urllib3 and chardet.
      (Closes: #771349, #788383)

  [ Daniele Tricoli ]
  * debian/python{,3}-requests.pyremove
    - Remove embedded copy of chardet and urllib3. Previously it was done by
      02_use-system-chardet-and-urllib3.patch.

 -- Daniele Tricoli <email address hidden>  Thu, 11 Jun 2015 01:39:13 +0200

Available diffs

Superseded in wily-release
Deleted in wily-proposed (Reason: moved to release)
requests (2.7.0-2) unstable; urgency=medium

  * Upload to unstable.
  * debian/control
    - Add httpie (<< 0.9.2) to python-requests' Breaks since constants
      imported by httpie from requests.compat were removed.

 -- Daniele Tricoli <email address hidden>  Wed, 27 May 2015 17:31:38 +0200

Available diffs

Superseded in wily-release
Deleted in wily-proposed (Reason: moved to release)
requests (2.7.0-1) experimental; urgency=medium

  * New upstream release. (Closes: #784095)
    - Embedded copy (not used) of urllib3 does not require SSLv3 anymore.
      (Closes: #770172)
  * debian/control
    - Move python-ndg-httpsclient, python-openssl and python-pyasn1 to Suggests
      inside python-requests' stanza since Python 2.7.9 include SNI support
      and PEP 476 made it as secure as Python 3.
    - Bump python{,3}-urllib3 to 1.10.4.
  * debian/copyright
    - Update copyright years.
    - Update to MPL-2.0 license stanza of requests/cacert.pem (not used but
      shipped in orig tarball).
  * debian/watch
    - Use pypi.debian.net redirector.
  * debian/patches/01_use-system-ca-certificates.patch
    - Refresh and remove CA certificate bundle from MANIFEST.in.
     (Closes: #781610)
  * debian/patches/02_use-system-chardet-and-urllib3.patch
    - Refresh.
  * debian/patches/04_make-requests.packages.urllib3-same-as-urllib3.patch
    - Refresh.
  * debian/patches/05_do-not-ascribe-cookies-to-the-target-domain.patch
    - Remove since fixed upstream.
  * debian/python{,3}-requests.links
    - Remove links thanks to the import machinery in
      04_make-requests.packages.urllib3-same-as-urllib3.patch

 -- Daniele Tricoli <email address hidden>  Mon, 04 May 2015 21:43:40 +0200

Available diffs

Superseded in trusty-updates
Deleted in trusty-proposed (Reason: moved to -updates)
requests (2.2.1-1ubuntu0.3) trusty-proposed; urgency=medium

  * SRU, update python3.4 for trusty. LP: #1433324.
  * Build a -whl package (setuptools is needed to build the wheel package).
 -- Matthias Klose <email address hidden>   Tue, 17 Mar 2015 23:40:09 +0100
Superseded in wily-release
Obsolete in vivid-release
Deleted in vivid-proposed (Reason: moved to release)
requests (2.4.3-6) unstable; urgency=medium


  * debian/patches/05_do-not-ascribe-cookies-to-the-target-domain.patch
    - Fix session fixation and cookie stealing: CVE-2015-2296.
      (Closes: #780506)

 -- Daniele Tricoli <email address hidden>  Mon, 16 Mar 2015 01:31:10 +0100

Available diffs

Superseded in trusty-updates
Superseded in trusty-security
requests (2.2.1-1ubuntu0.2) trusty-security; urgency=medium

  * SECURITY UPDATE: Session fixation and cookie stealing issue
    (LP: #1432555).
    - debian/patches/CVE-2015-2296.patch: extract cookies from the original
      request (which still has the host which returned the cookies)
    - CVE-2015-2296
 -- Daniel Watkins <email address hidden>   Mon, 16 Mar 2015 10:11:03 +0000
Obsolete in utopic-updates
Obsolete in utopic-security
requests (2.3.0-1ubuntu0.1) utopic-security; urgency=medium

  * SECURITY UPDATE: Session fixation and cookie stealing issue
    (LP: #1432555).
    - debian/patches/CVE-2015-2296.patch: extract cookies from the original
      request (which still has the host which returned the cookies)
    - CVE-2015-2296
 -- Daniel Watkins <email address hidden>   Mon, 16 Mar 2015 10:37:44 +0000
Superseded in vivid-release
Deleted in vivid-proposed (Reason: moved to release)
requests (2.4.3-5) unstable; urgency=medium


  * Team upload.
  * d/control: Remove the Build-Depends on python{,3}-pytest since we
    aren't actually running the tests at build time.  (Closes: #770173)
  * d/rules: Update the comment about why the tests are currently disabled
    at build time to point to the updated upstream url.

 -- Barry Warsaw <email address hidden>  Wed, 19 Nov 2014 18:00:46 -0500

Available diffs

Superseded in vivid-release
Deleted in vivid-proposed (Reason: moved to release)
requests (2.4.3-4) unstable; urgency=medium


  * debian/patches/04_make-requests.packages.urllib3-same-as-urllib3.patch
    - Fix requests.packages.urllib3 sub on Python 3. Thanks to Tianon
      Gravi for the report. (Closes: #769496)

 -- Daniele Tricoli <email address hidden>  Fri, 14 Nov 2014 04:50:22 +0100

Available diffs

Superseded in vivid-release
Deleted in vivid-proposed (Reason: moved to release)
requests (2.4.3-3) unstable; urgency=medium


  * debian/patches/04_make-requests.packages.urllib3-same-as-urllib3.patch
    - Make Python import system know that requests.packages.urllib3 and
      urllib3 are the same thing. Thanks to Jakub Wilk for the patch.
      (Closes: #769047)

 -- Daniele Tricoli <email address hidden>  Tue, 11 Nov 2014 03:28:18 +0100

Available diffs

Superseded in vivid-release
Deleted in vivid-proposed (Reason: moved to release)
requests (2.4.3-2) unstable; urgency=medium


  * debian/patches/03_export-IncompleteRead.patch
    - Export IncompleteRead from requests.compat since it's imported by
      python-pip. (Closes: #766419)

 -- Daniele Tricoli <email address hidden>  Thu, 23 Oct 2014 02:54:46 +0200

Available diffs

Superseded in trusty-updates
Superseded in trusty-security
requests (2.2.1-1ubuntu0.1) trusty-security; urgency=medium

  * SECURITY UPDATE: Authorization header disclosure on redirect
    - debian/patches/CVE-2014-1829.patch: if redirected, strip
      authentication header in requests/sessions.py, add
      should_bypass_proxies() to requests/utils.py.
    - CVE-2014-1829
  * SECURITY UPDATE: Proxy-Authorization header disclosure on redirect
    - debian/patches/CVE-2014-1830.patch: also strip proxy headers in
      requests/sessions.py, added test to test_requests.py.
    - CVE-2014-1830
 -- Marc Deslauriers <email address hidden>   Tue, 30 Sep 2014 16:13:52 -0400
Superseded in vivid-release
Obsolete in utopic-release
Deleted in utopic-proposed (Reason: moved to release)
requests (2.3.0-1) unstable; urgency=medium


  * Team upload.
  * New upstream release.
  * d/control: Added python{,3}-pytest to Build-Depends.
  * d/patches/*: Refreshed.

 -- Barry Warsaw <email address hidden>  Wed, 04 Jun 2014 10:40:46 -0400

Available diffs

Superseded in utopic-release
Deleted in utopic-proposed (Reason: moved to release)
requests (2.2.1-3) unstable; urgency=medium


  * Team upload.
  * d/control:
    - Fix python-requests-whl Depends.
    - Fix typo in python-requests-whl description.

 -- Barry Warsaw <email address hidden>  Thu, 22 May 2014 18:33:19 -0400

Available diffs

Superseded in utopic-release
Published in trusty-release
Deleted in trusty-proposed (Reason: moved to release)
requests (2.2.1-1) unstable; urgency=medium


  * New upstream release
  * debian/control
    - Bumped Standards-Version to 3.9.5 (no changes needed)
  * debian/copyright
    - Updated copyright years
  * debian/patches/02_use-system-chardet-and-urllib3.patches
    - Refreshed

 -- Daniele Tricoli <email address hidden>  Mon, 27 Jan 2014 04:58:17 +0100

Available diffs

Superseded in trusty-release
Deleted in trusty-proposed (Reason: moved to release)
requests (2.0.0-1) unstable; urgency=low


  * New upstream release (Closes: #725784)
  * Switched to pybuild
  * debian/clean
    - Switched to debian/clean for cleaning instead of using debian/rules
  * debian/control
    - Bumped python(3)-urllib3 to (>=1.7.1)
  * debian/copyright
    - Updated copyright year
  * debian/patches/02_use-system-chardet-and-urllib3.patches
    - Refreshed
  * debian/watch
    - Switched download URL to https

 -- Daniele Tricoli <email address hidden>  Fri, 18 Oct 2013 19:20:21 +0200

Available diffs

Superseded in trusty-release
Obsolete in saucy-release
Deleted in saucy-proposed (Reason: moved to release)
requests (1.2.3-1) unstable; urgency=low


  * New upstream release (Closes: #712915) (LP: #1187429)
    - Thanks to Scott Moser for the report
  * debian/compat
    - Bumped debhelper compatibility level to 9
  * debian/control
    - Bumped debhelper B-D to (>= 9)
    - Temporarily bumped X-Python-Version to >= 2.7 to prevent FTBFS
      due to lack of python-urllib3 for Python 2.6
  * debian/patches/02_use-system-chardet-and-urllib3.patches
    - Refreshed

 -- Daniele Tricoli <email address hidden>  Fri, 21 Jun 2013 08:52:39 +0200

Available diffs

Superseded in saucy-release
Deleted in saucy-proposed (Reason: moved to release)
requests (1.2.0-2) unstable; urgency=low


  * Uploading to unstable.
  * rm -rf requests.egg-info on clean so the package can be built twice.

 -- Thomas Goirand <email address hidden>  Sat, 11 May 2013 05:15:04 +0000

Available diffs

Superseded in saucy-release
Obsolete in raring-release
Deleted in raring-proposed (Reason: moved to release)
requests (1.1.0-1) experimental; urgency=low


  * New upstream release (Closes: #692602)
    - Thanks to Barry Warsaw for report
  * debian/control
    - Added python-chardet, python3-chardet to Build-Depends and moved
      them from Recommends to Depends since chardet is now required
    - Added python(3)-urllib3 (>= 1.5) to Build-Depends and Depends
      since the embedded copy is no more a fork
    - Removed python(3)-six since python(3)-urllib3 is not embedded
      anymore
    - Removed python-gevent and python-oauthlib from Recommends
      since upstream is not using them anymore
    - Bumped Standards-Version to 3.9.4 (no changes needed)
    - Fixed lintian vcs-field-not-canonical
  * debian/copyright
    - Updated to reflect upstream switch to Apache 2.0 and updated
      copyright years
  * debian/patches/01_do-not-use-python-certifi.patch
    - Removed because no longer necessary
  * debian/patches/02_do-not-use-embedded-python-six.patch
    - Removed because no longer necessary
  * debian/patches/01_use-system-ca-certificates.patch
    - Use the bundle provided by ca-certificates instead of
      the embedded one
  * debian/patches/02_use-system-chardet-and-urllib3.patches
    - Use the system python-chardet and python-urllib3 instead of the
      embedded copies

 -- Daniele Tricoli <email address hidden>  Sun, 20 Jan 2013 23:03:45 +0100
Superseded in raring-release
Deleted in raring-proposed (Reason: moved to release)
requests (0.14.2-0ubuntu1) raring; urgency=low

  * New upstream release (LP: #1076107).  Remaining changes:
    - debian/patches/01_do-not-use-python-certifi.patch: No longer necessary.
    - debian/patches/02_do-not-use-embedded-python-six.patch: refreshed
    - debian/patches/03-dont-use-embeded-urllib3.patch: refreshed and
      renamed to 03-use-distro-packages.patch
    - debian/control: python-chardet and python3-chardet are now required
      (i.e. Depends instead of Recommends).
 -- Barry Warsaw <email address hidden>   Thu, 01 Nov 2012 14:56:00 +0100

Available diffs

Superseded in raring-release
Obsolete in quantal-release
requests (0.12.1-1ubuntu6) quantal; urgency=low

  * debian/control: Resolve Depends misspelling of python-urllib3.
 -- Dave Walker (Daviey) <email address hidden>   Thu, 13 Sep 2012 14:55:21 +0100

Available diffs

Superseded in quantal-release
requests (0.12.1-1ubuntu5) quantal; urgency=low

  * Add -r to rm call in debian/rules removing requests/packages/urllib3
  * Add python3-urllib3 to build-depends and python3-requests depends
 -- Adam Conrad <email address hidden>   Wed, 12 Sep 2012 23:05:13 -0600

Available diffs

Superseded in quantal-release
Superseded in quantal-release
requests (0.12.1-1ubuntu4) quantal; urgency=low

  * debian/rules, debian/control,
    debian/patches/03-dont-use-embeded-urllib3.patch:
    Don't use embeded python-urllib3.
 -- Chuck Short <email address hidden>   Fri, 07 Sep 2012 09:06:26 -0500
Superseded in quantal-release
requests (0.12.1-1ubuntu3) quantal; urgency=low

  * d/{rules,control}: Disable tests and drop associated deps; 10/11
    of them require network connectivity so they break in offline build
    environments.
 -- James Page <email address hidden>   Tue, 14 Aug 2012 12:39:19 +0100

Available diffs

Superseded in quantal-release
requests (0.12.1-1ubuntu2) quantal; urgency=low

  * debian/control: Fix up testsuite some more.
 -- Chuck Short <email address hidden>   Wed, 18 Jul 2012 14:25:42 -0500

Available diffs

Superseded in quantal-release
requests (0.12.1-1ubuntu1) quantal; urgency=low

  * debia/rules: Enable test suite.
 -- Chuck Short <email address hidden>   Mon, 11 Jun 2012 09:18:06 -0400
Superseded in quantal-release
requests (0.12.1-1) unstable; urgency=low


  * New upstream release
  * debian/control
    - Added python-oauthlib to python-requests' Recommends field
  * debian/patches/01_do-not-use-python-certifi.patch
    - Refreshed

 -- Daniele Tricoli <email address hidden>  Fri, 04 May 2012 14:34:47 +0200

Available diffs

Superseded in quantal-release
requests (0.11.2-1) unstable; urgency=low


  * New upstream release
  * debian/patches/01_do-not-use-python-certifi.patch
    - Refreshed

 -- Daniele Tricoli <email address hidden>  Mon, 23 Apr 2012 16:06:33 +0200

Available diffs

Superseded in quantal-release
requests (0.11.1-1) unstable; urgency=low


  * New upstream release
  * debian/control
    - Added python3-chardet to python3-requests' Recommends field
    - Updated Description field
  * debian/patches/02_do-not-use-embedded-python-six.patch
    - Refreshed

 -- Daniele Tricoli <email address hidden>  Sun, 01 Apr 2012 12:33:42 +0200

Available diffs

Superseded in quantal-release
Published in precise-release
requests (0.8.2-1) unstable; urgency=low

  * New upstream release
  * debian/watch
    - Removed "debian uupdate" options
  * debian/{copyright,README.source}
    - Updated to reflect upstream changes: switched from poster to
      urllib3
    - Added a stanza about the embedded modified copy of the
      standard module Cookie
 -- Ubuntu Archive Auto-Sync <email address hidden>   Mon,  12 Dec 2011 12:01:38 +0000

Available diffs

Superseded in precise-release
requests (0.6.4-1) unstable; urgency=low

  * New upstream release
  * debian/control
    - Dropped python-eventlet from Depends field because it's not used
      anymore
    - Moved python-gevent from Depends field to Recommends field so
      python-requests can be installed also in ia64 and sparc
 -- Ubuntu Archive Auto-Sync <email address hidden>   Sun,  30 Oct 2011 10:30:11 +0000

Available diffs

Superseded in precise-release
requests (0.6.1-1) unstable; urgency=low

  * New upstream release
 -- Ubuntu Archive Auto-Sync <email address hidden>   Mon,  17 Oct 2011 15:32:36 +0000

Available diffs

Superseded in precise-release
Obsolete in oneiric-release
requests (0.5.0-1) unstable; urgency=low

  * New upstream release
  * debian/control
    - Updated description to mention proxy support
 -- Ubuntu Archive Auto-Sync <email address hidden>   Mon,  27 Jun 2011 08:07:54 +0000

Available diffs

Superseded in oneiric-release
requests (0.4.1-1) unstable; urgency=low

  * Initial release (Closes: #629370)
 -- Ubuntu Archive Auto-Sync <email address hidden>   Wed,  15 Jun 2011 22:45:28 +0000
175 of 75 results