ea41a5faab
Fixes the following security issues: * 4.6.2: A vulnerability (CVE-2020-27783) was discovered in the HTML Cleaner by Yaniv Nizry, which allowed JavaScript to pass through. The cleaner now removes more sneaky "style" content. * 4.6.1: A vulnerability was discovered in the HTML Cleaner by Yaniv Nizry, which allowed JavaScript to pass through. The cleaner now removes more sneaky "style" content. For more details, see the changes file: https://github.com/lxml/lxml/blob/lxml-4.6.2/CHANGES.txt Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
37 lines
1.3 KiB
Makefile
37 lines
1.3 KiB
Makefile
################################################################################
|
|
#
|
|
# python-lxml
|
|
#
|
|
################################################################################
|
|
|
|
PYTHON_LXML_VERSION = 4.6.2
|
|
PYTHON_LXML_SITE = https://files.pythonhosted.org/packages/db/f7/43fecb94d66959c1e23aa53d6161231dca0e93ec500224cf31b3c4073e37
|
|
PYTHON_LXML_SOURCE = lxml-$(PYTHON_LXML_VERSION).tar.gz
|
|
|
|
# Not including the GPL, because it is used only for the test scripts.
|
|
PYTHON_LXML_LICENSE = BSD-3-Clause, Others
|
|
PYTHON_LXML_LICENSE_FILES = \
|
|
LICENSES.txt \
|
|
doc/licenses/BSD.txt \
|
|
doc/licenses/elementtree.txt \
|
|
src/lxml/isoschematron/resources/rng/iso-schematron.rng
|
|
|
|
# python-lxml can use either setuptools, or distutils as a fallback.
|
|
# So, we use setuptools.
|
|
PYTHON_LXML_SETUP_TYPE = setuptools
|
|
|
|
PYTHON_LXML_DEPENDENCIES = libxml2 libxslt zlib
|
|
HOST_PYTHON_LXML_DEPENDENCIES = host-libxml2 host-libxslt host-zlib
|
|
|
|
# python-lxml needs these scripts in order to properly detect libxml2 and
|
|
# libxslt compiler and linker flags
|
|
PYTHON_LXML_BUILD_OPTS = \
|
|
--xslt-config=$(STAGING_DIR)/usr/bin/xslt-config \
|
|
--xml2-config=$(STAGING_DIR)/usr/bin/xml2-config
|
|
HOST_PYTHON_LXML_BUILD_OPTS = \
|
|
--xslt-config=$(HOST_DIR)/bin/xslt-config \
|
|
--xml2-config=$(HOST_DIR)/bin/xml2-config
|
|
|
|
$(eval $(python-package))
|
|
$(eval $(host-python-package))
|