Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings

upgrade versions of setup tools#1051

Closed
sadewa25 wants to merge 1 commit into
docker-library:masterdocker-library/python:masterfrom
sadewa25:mastersadewa25/python:masterCopy head branch name to clipboard
Closed

upgrade versions of setup tools#1051
sadewa25 wants to merge 1 commit into
docker-library:masterdocker-library/python:masterfrom
sadewa25:mastersadewa25/python:masterCopy head branch name to clipboard

Conversation

@sadewa25

Copy link
Copy Markdown

This upgrade will solved the issues of CVE-2025-47273 which had the high score on vulnerability database.

@ad-m-ss

ad-m-ss commented Jun 10, 2025

Copy link
Copy Markdown

We do not upgrade setuptools there ( #1012 ), you need to go upstream and ask the Python project.

@tianon tianon closed this Jun 10, 2025
@ns-svemu

Copy link
Copy Markdown

Hi @ad-m-ss @sadewa25 - I followed the conversation in ( #1012 ) . But setup tools bundle is upgraded to the version >79.0.0 in python ( https://github.com/python/cpython/tree/3.11/Lib/ensurepip/_bundled ). Now is the current PR change valid?

@edmorley

Copy link
Copy Markdown
Contributor

@ns-svemu Ah good spot! Yeah once those upstream changes are released these images should pick that up automatically (and we can then also optionally simplify the version handling in this repo too). I've written some more here:
#1012 (comment)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants

Morty Proxy This is a proxified and sanitized view of the page, visit original site.