Skip to content

[AUTOPATCHER-CORE] Upgrade python-ecdsa to 0.19.2 for CVE-2026-33936#16345

Open
CBL-Mariner-Bot wants to merge 1 commit intofasttrack/2.0from
cblmargh/python-ecdsa-upgrade-to-0.19.2-fasttrack/2.0
Open

[AUTOPATCHER-CORE] Upgrade python-ecdsa to 0.19.2 for CVE-2026-33936#16345
CBL-Mariner-Bot wants to merge 1 commit intofasttrack/2.0from
cblmargh/python-ecdsa-upgrade-to-0.19.2-fasttrack/2.0

Conversation

@CBL-Mariner-Bot
Copy link
Copy Markdown
Collaborator

[AUTOPATCHER-CORE] Upgrade python-ecdsa to 0.19.2 for CVE-2026-33936
Upgrade pipeline run -> https://dev.azure.com/mariner-org/mariner/_build/results?buildId=1080698&view=results

@Kanishk-Bansal
Copy link
Copy Markdown
Contributor

Buddy Build

@Kanishk-Bansal Kanishk-Bansal added the CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review label Mar 29, 2026
Summary: ECDSA cryptographic signature library (pure python)
Name: python-ecdsa
Version: 0.17.0
Version: 0.19.2
Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Beyond pTest what validation have we done to verify that this minor version upgrade is ok. Are there any indications or concerns of compatibility between this version an 0.17.0?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Automatic PR AutoUpgrade Core CVE-fixed-by-upgrade CVE fixed by package upgrade CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review fasttrack/2.0 PRs Destined for Azure Linux 2.0 Packaging security

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants