I reviewed python-requests-oauthlib (1.0.0) from eoan.

Build dependencies:
 - python-all
 - python-setuptools,
 - python3-all,
 - dh-python,
 - python3-setuptools,
 - python-requests,
 - python-oauthlib,
 - python-sphinx
 - python3-sphinx
 - python-requests-mock
 - python3-requests,
 - python3-pytest,
 - python3-request-mock
 - python3-mock
 - python3-oauthlib

- No CVE history

- no pre or postinst scripts
- no systemd unit files
- no system dbus services
- no setuid files
- no binaries in PATH
- no sudo fragments
- no udev rules
- It has tests, and they run in build time
- logging  looked fine
- no envvar
- no ioctl
- no file IO (only found in tests)
- no temp files

Took a look on the issues opened in git project, it seems ok in terms of
security issue, nothing relevant found. 

Ack from security team to promote to main.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1820221

Title:
  [MIR] python-requests-oauthlib as dependency of mailman3

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/python-requests-oauthlib/+bug/1820221/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to