Update to v48.0.0

Full changelog: https://cryptography.io/en/latest/changelog/#v48-0-0

This contains one backwards-incompatible change, but which is in a
failure path where the previous behavior was unexpected.

 - BACKWARDS INCOMPATIBLE: Loading an X.509 CRL whose inner
   TBSCertList.signature algorithm does not match the outer
   signatureAlgorithm now raises ValueError. Previously, such CRLs were
   parsed successfully and only rejected during signature validation.

 - Added support for ML-KEM key encapsulation and ML-DSA signing when
   using OpenSSL 3.5.0 or later

Signed-off-by: Jeremy Cline <jeremycline@microsoft.com>
This commit is contained in:
Jeremy Cline 2026-05-05 07:36:36 -04:00
commit 96d09f3c86
No known key found for this signature in database
4 changed files with 38 additions and 3 deletions

View file

@ -5,7 +5,7 @@
%global srcname cryptography
Name: python-%{srcname}
Version: 47.0.0
Version: 48.0.0
Release: %autorelease
Summary: PyCA's cryptography library
@ -25,6 +25,10 @@ Source0: https://github.com/pyca/cryptography/archive/%{version}/%{srcnam
Source1: cryptography-%{version}-vendor.tar.bz2
Source2: conftest-skipper.py
# Temporarily drop cc dependency to .60 since it's the same as .61
# except for a docblock change.
Patch: 0001-Lower-cc-dependency.patch
ExclusiveArch: %{rust_arches}
BuildRequires: openssl-devel