ThanatosDi / EpubConv_Python

Use python convert epub file from Simplified Chinese to Traditional Chinese on windows
Apache License 2.0
90 stars 15 forks source link

chore(deps): update dependency pyinstaller to v5 [security] #47

Closed renovate[bot] closed 3 months ago

renovate[bot] commented 4 months ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
pyinstaller (source) ==4.2 -> ==5.13.1 age adoption passing confidence

GitHub Vulnerability Alerts

CVE-2023-49797

Impact

A PyInstaller built application, elevated as a privileged process, may be tricked by an unprivileged attacker into deleting files the unprivileged user does not otherwise have access to.

A user is affected if all the following are satisfied:

Patches

The vulnerability has been addressed in https://github.com/pyinstaller/pyinstaller/pull/7827 which corresponds to pyinstaller >= 5.13.1

Workarounds

Is there a way for users to fix or remediate the vulnerability without upgrading?

No workaround, although the attack complexity becomes much higher if the application is built with Python >= 3.8.0.


Release Notes

pyinstaller/pyinstaller (pyinstaller) ### [`v5.13.1`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.13.1) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.13.0...v5.13.1) Please see the [v5.13.1 section of the changelog](https://pyinstaller.org/en/v5.13.1/CHANGES.html#id1) for a list of the changes since v5.13.0. Note that this is a bugfix only release. It's primary purpose is to publish [https://github.com/pyinstaller/pyinstaller/pull/7827](https://togithub.com/pyinstaller/pyinstaller/pull/7827). ### [`v5.13.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.13.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.12.0...v5.13.0) Please see the [v5.13.0 section of the changelog](https://pyinstaller.org/en/v5.13.0/CHANGES.html#id1) for a list of the changes since v5.12.0. Note that this is intended to be the last `v5.x` release. `v6.0` will contain breaking changes from [#​7619](https://togithub.com/pyinstaller/pyinstaller/issues/7619), [#​7713](https://togithub.com/pyinstaller/pyinstaller/issues/7713) and [#​6999](https://togithub.com/pyinstaller/pyinstaller/issues/6999). If you want to avoid unexpected disruption, you may wish to pin pyinstaller (e.g. `pip install "pyinstaller<6"`). ### [`v5.12.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.12.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.11.0...v5.12.0) Please see the [v5.12.0 section of the changelog](https://pyinstaller.org/en/v5.12.0/CHANGES.html#id1) for a list of the changes since v5.11.0. ### [`v5.11.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.11.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.10.1...v5.11.0) Please see the [v5.11.0 section of the changelog](https://pyinstaller.org/en/v5.11.0/CHANGES.html#id1) for a list of the changes since v5.10.1. ### [`v5.10.1`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.10.1) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.10.0...v5.10.1) Please see the [v5.10.1 section of the changelog](https://pyinstaller.org/en/v5.10.1/CHANGES.html#id1) for a list of the changes since v5.10.0. ### [`v5.10.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.10.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.9.0...v5.10.0) Please see the [v5.10.0 section of the changelog](https://pyinstaller.org/en/v5.10.0/CHANGES.html#id1) for a list of the changes since v5.9.0. ### [`v5.9.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.9.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.8.0...v5.9.0) Please see the [v5.9.0 section of the changelog](https://pyinstaller.org/en/v5.9.0/CHANGES.html#id1) for a list of the changes since v5.8.0. ### [`v5.8.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.8.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.7.0...v5.8.0) Please see the [v5.8.0 section of the changelog](https://pyinstaller.org/en/v5.8.0/CHANGES.html#id1) for a list of the changes since v5.7.0. ### [`v5.7.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.7.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.6.2...v5.7.0) Please see the [v5.7.0 section of the changelog](https://pyinstaller.org/en/v5.7.0/CHANGES.html#id1) for a list of the changes since v5.6.2. ### [`v5.6.2`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.6.2) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.6.1...v5.6.2) Please see the [v5.6.2 section of the changelog](https://pyinstaller.org/en/v5.6.2/CHANGES.html#id1) for a list of the changes since v5.6.1. ### [`v5.6.1`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.6.1) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.6...v5.6.1) Please see the [v5.6.1 section of the changelog](https://pyinstaller.org/en/v5.6.1/CHANGES.html#id1) for a list of the changes since v5.6. ### [`v5.6`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.6) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.5...v5.6) Please see the [v5.6 section of the changelog](https://pyinstaller.org/en/v5.6/CHANGES.html#id1) for a list of the changes since v5.5. ### [`v5.5`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.5) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.4.1...v5.5) Please see the [v5.5 section of the changelog](https://pyinstaller.org/en/v5.5/CHANGES.html#id1) for a list of the changes since v5.4.1. ### [`v5.4.1`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.4.1) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.4...v5.4.1) Please see the [v5.4.1 section of the changelog](https://pyinstaller.org/en/v5.4.1/CHANGES.html#id1) for a list of the changes since v5.4. ### [`v5.4`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.4) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.3...v5.4) Please see the [v5.4 section of the changelog](https://pyinstaller.org/en/v5.4/CHANGES.html#id1) for a list of the changes since v5.3. ### [`v5.3`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.3) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.2...v5.3) Please see the [v5.3 section of the changelog](https://pyinstaller.org/en/v5.3/CHANGES.html#id1) for a list of the changes since v5.2. ### [`v5.2`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.2) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.1...v5.2) Please see the [v5.2 section of the changelog](https://pyinstaller.org/en/v5.2/CHANGES.html#id1) for a list of the changes since v5.1. ### [`v5.1`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.1) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.0.1...v5.1) Please see the [v5.1 section of the changelog](https://pyinstaller.readthedocs.io/en/v5.1/CHANGES.html#id1) for a list of the changes. ### [`v5.0.1`](https://togithub.com/pyinstaller/pyinstaller/compare/v5.0...v5.0.1) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v5.0...v5.0.1) ### [`v5.0`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v5.0) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.10...v5.0) Please see the [v5.0 section of the changelog](https://pyinstaller.readthedocs.io/en/v5.0/CHANGES.html#id1) for a list of the changes since v4.10. ### [`v4.10`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.10) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.9...v4.10) Please see the [v4.10 section of the changelog](https://pyinstaller.readthedocs.io/en/v4.10/CHANGES.html#id1) for a list of the changes since v4.9. ### [`v4.9`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.9) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.8...v4.9) Please see the [v4.9 section of the changelog](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) for a list of the changes since v4.8. ### [`v4.8`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.8) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.7...v4.8) Please see the [v4.8 section of the changelog](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) for a list of the changes since v4.7. ### [`v4.7`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.7) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.6...v4.7) Please see the [v4.7 section of the changelog](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) for a list of the changes since v4.6. ### [`v4.6`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.6) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.5.1...v4.6) Please see the [v4.6 section of the changelog](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) for a list of the changes since v4.5.1. ### [`v4.5.1`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.5.1): Release 4.5.1 [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.5...v4.5.1) Please see the [v4.5.1 section of the changelog](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) for a list of the bufixes since v4.5. ### [`v4.5`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.5) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.4...v4.5) Please see the [v4.5 section of the changelog](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) for the new features and bufixes since v4.4. ### [`v4.4`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.4) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.3...v4.4) See the [the v4.4 section](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) of the changelog for the new features and bugfixes since v4.3. ### [`v4.3`](https://togithub.com/pyinstaller/pyinstaller/releases/tag/v4.3) [Compare Source](https://togithub.com/pyinstaller/pyinstaller/compare/v4.2...v4.3) Please see the [changelog](https://pyinstaller.readthedocs.io/en/stable/CHANGES.html#id1) if you wish to see a full list of changes.

Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

â™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.