Skip to content

Bump cryptography to 3.2#42489

Merged
frenck merged 1 commit intodevfrom
bump-cryptography
Oct 27, 2020
Merged

Bump cryptography to 3.2#42489
frenck merged 1 commit intodevfrom
bump-cryptography

Conversation

@balloob
Copy link
Copy Markdown
Member

@balloob balloob commented Oct 27, 2020

Breaking change

Proposed change

Bump cryptography from 2.9 to 3.2 because it contains 2 security vulnerability fixes.

https://github.com/pyca/cryptography/blob/master/CHANGELOG.rst

Type of change

  • Dependency upgrade
  • Bugfix (non-breaking change which fixes an issue)
  • New integration (thank you!)
  • New feature (which adds functionality to an existing integration)
  • Breaking change (fix/feature causing existing functionality to break)
  • Code quality improvements to existing code or addition of tests

Example entry for configuration.yaml:

# Example configuration.yaml

Additional information

  • This PR fixes or closes issue: fixes #
  • This PR is related to issue:
  • Link to documentation pull request:

Checklist

  • The code change is tested and works locally.
  • Local tests pass. Your PR cannot be merged unless tests pass
  • There is no commented out code in this PR.
  • I have followed the development checklist
  • The code has been formatted using Black (black --fast homeassistant tests)
  • Tests have been added to verify that the new code works.

If user exposed functionality or configuration variables are added/changed:

If the code communicates with devices, web services, or third-party tools:

  • The manifest file has all fields filled out correctly.
    Updated and included derived files by running: python3 -m script.hassfest.
  • New or updated dependencies have been added to requirements_all.txt.
    Updated by running python3 -m script.gen_requirements_all.
  • Untested files have been added to .coveragerc.

The integration reached or maintains the following Integration Quality Scale:

  • No score or internal
  • 🥈 Silver
  • 🥇 Gold
  • 🏆 Platinum

To help with the load of incoming pull requests:

@balloob balloob added this to the 0.117.0 milestone Oct 27, 2020
@probot-home-assistant probot-home-assistant Bot added Hacktoberfest core dependency Pull requests marked as a dependency upgrade small-pr PRs with less than 30 lines. labels Oct 27, 2020
@frenck frenck merged commit e797c28 into dev Oct 27, 2020
@frenck frenck deleted the bump-cryptography branch October 27, 2020 21:59
balloob added a commit that referenced this pull request Oct 27, 2020
@Jc2k Jc2k mentioned this pull request Oct 28, 2020
17 tasks
tschamm pushed a commit to tschamm/core that referenced this pull request Oct 29, 2020
Thomas55555 pushed a commit to Thomas55555/core that referenced this pull request Feb 24, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

cherry-picked cla-signed core dependency Pull requests marked as a dependency upgrade Hacktoberfest small-pr PRs with less than 30 lines.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants