[Bug 294246] lang/python3: Missing security update

From: <bugzilla-noreply_at_freebsd.org>
Date: Wed, 08 Apr 2026 03:41:55 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=294246

--- Comment #9 from Charlie Li <vishwin@freebsd.org> ---
lang/python314 is currently not maintained by the python@ team. It will need
portmgr@ action or a repeated maintainer timeout in order for it to go
unmaintained, which then enables python@ to take it.

Upstream has decided to hold off backporting CVE-2025-15366 and CVE-2025-15367
due to potentially breaking existing behaviour and a need to further analyse if
the commits in the main branch addressing them follow the relevant
standards/RFCs correctly. Thus we will also hold off on them.

-- 
You are receiving this mail because:
You are the assignee for the bug.