From fbef3e574ed67c69cffd12f71c0f9b3d6bab9137 Mon Sep 17 00:00:00 2001 From: Robert Scott Date: Sat, 11 Sep 2021 13:35:56 +0100 Subject: [PATCH] python38Packages.flask-restx: add patch for CVE-2021-32838 --- pkgs/development/python-modules/flask-restx/default.nix | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/pkgs/development/python-modules/flask-restx/default.nix b/pkgs/development/python-modules/flask-restx/default.nix index e1de7bf0d3b..b33a5704c34 100644 --- a/pkgs/development/python-modules/flask-restx/default.nix +++ b/pkgs/development/python-modules/flask-restx/default.nix @@ -1,6 +1,7 @@ { lib , buildPythonPackage , fetchFromGitHub +, fetchpatch , aniso8601 , jsonschema , flask @@ -30,6 +31,14 @@ buildPythonPackage rec { sha256 = "0aj13nd3z71gb8c2kqiaz3f9k7jr0srlvrsx8hpz4nkpki8jiz2s"; }; + patches = [ + (fetchpatch { + name = "CVE-2021-32838.patch"; + url = "https://github.com/python-restx/flask-restx/commit/bab31e085f355dd73858fd3715f7ed71849656da.patch"; + sha256 = "1n786f0zq3gyrp9s28qw3j8bkqhys38vbaafaizplaf4f76bh7m8"; + }) + ]; + propagatedBuildInputs = [ aniso8601 jsonschema flask werkzeug pytz six ] ++ lib.optionals isPy27 [ enum34 ];