From b0a54b3e9199d98a4764c3fefacc64f2a2fc25e4 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 1 Jul 2026 14:19:32 +0100 Subject: [PATCH 01/47] Update to 0.11.26 (close RHBZ#2495097) --- .gitignore | 1 + sources | 2 +- uv.spec | 2 +- 3 files changed, 3 insertions(+), 2 deletions(-) diff --git a/.gitignore b/.gitignore index 235ed96..2c78ba6 100644 --- a/.gitignore +++ b/.gitignore @@ -219,3 +219,4 @@ /uv-0.11.23.tar.gz /uv-0.11.24.tar.gz /uv-0.11.25.tar.gz +/uv-0.11.26.tar.gz diff --git a/sources b/sources index 82e9d50..f0835cd 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.25.tar.gz) = 9b993ae026d55ee8dfe13101e0fdbe026d81b77ff42b20ad42ff72c9708f2d767cde94010e69cd4f65fa8821c43958bc665893761119770deba70823d895298c +SHA512 (uv-0.11.26.tar.gz) = 8be3842d1a534765a99a130a857c860a2b6ec2dd517cbdff7f697db55500d1092b4f323459625d433635f3559a058eef98140eb65b1082394994d72c5d329ee1 diff --git a/uv.spec b/uv.spec index bceac92..dcba7d0 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.25 +Version: 0.11.26 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 7e46b8e3f9bc1214461041ccbbd23f06b0afebb1 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Thu, 2 Jul 2026 06:04:00 +0100 Subject: [PATCH 02/47] Update to 0.11.26 (close RHBZ#2495097) --- .gitignore | 1 + sources | 2 +- uv.spec | 5 ++--- 3 files changed, 4 insertions(+), 4 deletions(-) diff --git a/.gitignore b/.gitignore index 235ed96..2c78ba6 100644 --- a/.gitignore +++ b/.gitignore @@ -219,3 +219,4 @@ /uv-0.11.23.tar.gz /uv-0.11.24.tar.gz /uv-0.11.25.tar.gz +/uv-0.11.26.tar.gz diff --git a/sources b/sources index 82e9d50..f0835cd 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.25.tar.gz) = 9b993ae026d55ee8dfe13101e0fdbe026d81b77ff42b20ad42ff72c9708f2d767cde94010e69cd4f65fa8821c43958bc665893761119770deba70823d895298c +SHA512 (uv-0.11.26.tar.gz) = 8be3842d1a534765a99a130a857c860a2b6ec2dd517cbdff7f697db55500d1092b4f323459625d433635f3559a058eef98140eb65b1082394994d72c5d329ee1 diff --git a/uv.spec b/uv.spec index bceac92..6fd3ea5 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.25 +Version: 0.11.26 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See @@ -510,8 +510,7 @@ tomcli set crates/uv/Cargo.toml del dependencies.tracing-durations-export # tikv-jemallocator # wanted: 0.6.0 # currently packaged: 0.7.0 -# We haven’t suggested this upstream because we know they use renovate with -# dependency cooldowns, and we expect they will soon update without prompting. +# https://github.com/astral-sh/uv/pull/19735 # We use sed instead of tomcli because the target.cfg(…) expression is a # *mess*, and we don’t want to have to write it out here. sed --regexp-extended --in-place \ From 0e140d93924ad47b47ca2ba9dbca796f59d06925 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Thu, 2 Jul 2026 06:04:00 +0100 Subject: [PATCH 03/47] Update to 0.11.26 (close RHBZ#2495097) --- uv.spec | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/uv.spec b/uv.spec index dcba7d0..6fd3ea5 100644 --- a/uv.spec +++ b/uv.spec @@ -510,8 +510,7 @@ tomcli set crates/uv/Cargo.toml del dependencies.tracing-durations-export # tikv-jemallocator # wanted: 0.6.0 # currently packaged: 0.7.0 -# We haven’t suggested this upstream because we know they use renovate with -# dependency cooldowns, and we expect they will soon update without prompting. +# https://github.com/astral-sh/uv/pull/19735 # We use sed instead of tomcli because the target.cfg(…) expression is a # *mess*, and we don’t want to have to write it out here. sed --regexp-extended --in-place \ From c05ebc571f5b8b4fa413fb78e864e6018401b5b9 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Thu, 2 Jul 2026 14:38:42 +0100 Subject: [PATCH 04/47] Simplify .gitignore [skip changelog] --- .gitignore | 223 +---------------------------------------------------- 1 file changed, 1 insertion(+), 222 deletions(-) diff --git a/.gitignore b/.gitignore index 2c78ba6..36e4cb1 100644 --- a/.gitignore +++ b/.gitignore @@ -1,222 +1 @@ -/pubgrub-3f0ba760951ab0deeac874b98bb18fc90103fcf7.tar.gz -/reqwest-middleware-21ceec9a5fd2e8d6f71c3ea2999078fecbd13cbe.tar.gz -/rs-async-zip-011b24604fa7bc223daaad7712c0694bac8f0a87.tar.gz -/uv-0.2.32.tar.gz -/uv-0.2.33.tar.gz -/pubgrub-2fac39371a47e7cb821e510aaa4de25405413d29.tar.gz -/uv-0.2.34.tar.gz -/uv-0.2.35.tar.gz -/uv-0.2.37-filtered.tar.zst -/uv-0.3.0-filtered.tar.zst -/pubgrub-aaef464c1b0d8eea4ff9ffaee4f3458c236d10da.tar.gz -/reqwest-middleware-5e3eaf254b5bd481c75d2710eed055f95b756913.tar.gz -/uv-0.3.2-filtered.tar.zst -/uv-0.3.3-filtered.tar.zst -/pubgrub-388685a8711092971930986644cfed152d1a1f6c.tar.gz -/uv-0.3.4-filtered.tar.zst -/tl-6e25b2ee2513d75385101a8ff9f591ef51f314ec.tar.gz -/uv-0.3.5-filtered.tar.zst -/uv-0.4.0-filtered.tar.zst -/uv-0.4.1-filtered.tar.zst -/uv-0.4.2-filtered.tar.zst -/uv-0.4.4-filtered.tar.zst -/uv-0.4.5-filtered.tar.zst -/uv-0.4.6-filtered.tar.zst -/uv-0.4.7-filtered.tar.zst -/uv-0.4.8-filtered.tar.zst -/uv-0.4.9-filtered.tar.zst -/uv-0.4.10-filtered.tar.zst -/uv-0.4.15.tar.gz -/uv-0.4.16.tar.gz -/uv-0.4.17.tar.gz -/uv-0.4.18.tar.gz -/uv-0.4.19.tar.gz -/uv-0.4.20.tar.gz -/uv-0.4.21.tar.gz -/uv-0.4.22.tar.gz -/uv-0.4.23.tar.gz -/pubgrub-19c77268c0ad5f69d7e12126e0cfacfbba466481.tar.gz -/uv-0.4.24.tar.gz -/uv-0.4.25.tar.gz -/pubgrub-7243f4faf8e54837aa8a401a18406e7173de4ad5.tar.gz -/reqwest-middleware-d95ec5a99fcc9a4339e1850d40378bbfe55ab121.tar.gz -/uv-0.4.26.tar.gz -/uv-0.4.27.tar.gz -/uv-0.4.28.tar.gz -/uv-0.4.29.tar.gz -/pubgrub-95e1390399cdddee986b658be19587eb1fdb2d79.tar.gz -/uv-0.4.30.tar.gz -/uv-0.5.0.tar.gz -/uv-0.5.1.tar.gz -/uv-0.5.2.tar.gz -/rs-async-zip-c909fda63fcafe4af496a07bfda28a5aae97e58d.tar.gz -/uv-0.5.3.tar.gz -/pubgrub-57afc831bf2551f164617a10383cf288bf5d190d.tar.gz -/uv-0.5.4.tar.gz -/uv-0.5.5.tar.gz -/pubgrub-9cd9049a64c7352de2ff3b525b9ae36421b0cc18.tar.gz -/uv-0.5.6.tar.gz -/pubgrub-57832d0588fbb7aab824813481104761dc1c7740.tar.gz -/uv-0.5.7.tar.gz -/uv-0.5.8.tar.gz -/uv-0.5.9.tar.gz -/uv-0.5.10.tar.gz -/pubgrub-05e8d12cea8d72c6d2d017900e478d0abd28fef4.tar.gz -/uv-0.5.11.tar.gz -/uv-0.5.12.tar.gz -/pubgrub-648aa343486e5529953153781fc86025c73c4a61.tar.gz -/uv-0.5.13.tar.gz -/uv-0.5.14.tar.gz -/uv-0.5.15.tar.gz -/uv-0.5.16.tar.gz -/uv-0.5.17.tar.gz -/uv-0.5.18.tar.gz -/uv-0.5.19.tar.gz -/uv-0.5.20.tar.gz -/uv-0.5.21.tar.gz -/uv-0.5.22.tar.gz -/uv-0.5.23.tar.gz -/uv-0.5.24.tar.gz -/uv-0.5.25.tar.gz -/uv-0.5.26.tar.gz -/uv-0.5.27.tar.gz -/pubgrub-b70cf707aa43f21b32f3a61b8a0889b15032d5c4.tar.gz -/tokio-tar-ba2b140f27d081c463335f0d68b5f8df8e6c845e.tar.gz -/uv-0.5.28.tar.gz -/tokio-tar-efeaea927c7a40ee66121de2e1bebfd5d7a4a602.tar.gz -/uv-0.5.29.tar.gz -/uv-0.5.30.tar.gz -/uv-0.5.31.tar.gz -/uv-0.6.0.tar.gz -/uv-0.6.1.tar.gz -/uv-0.6.2.tar.gz -/uv-0.6.3.tar.gz -/uv-0.6.4.tar.gz -/uv-0.6.5.tar.gz -/uv-0.6.6.tar.gz -/uv-0.6.7.tar.gz -/uv-0.6.8.tar.gz -/uv-0.6.9.tar.gz -/uv-0.6.10.tar.gz -/uv-0.6.11.tar.gz -/uv-0.6.12.tar.gz -/uv-0.6.13.tar.gz -/uv-0.6.14.tar.gz -/uv-0.6.16.tar.gz -/uv-0.6.17.tar.gz -/pubgrub-a3b4db3abb1829ce889fb89fa6d157fef529ef7e.tar.gz -/uv-0.7.0.tar.gz -/uv-0.7.1.tar.gz -/uv-0.7.2.tar.gz -/uv-0.7.3.tar.gz -/uv-0.7.4.tar.gz -/pubgrub-73d6ecf5a4e4eb1c754b8c3255c4d31bdc266fdb.tar.gz -/uv-0.7.5.tar.gz -/uv-0.7.6.tar.gz -/uv-0.7.8.tar.gz -/pubgrub-06ec5a5f59ffaeb6cf5079c6cb184467da06c9db.tar.gz -/uv-0.7.9.tar.gz -/uv-0.7.10.tar.gz -/uv-0.7.11.tar.gz -/uv-0.7.12.tar.gz -/uv-0.7.13.tar.gz -/uv-0.7.14.tar.gz -/reqwest-middleware-ad8b9d332d1773fde8b4cd008486de5973e0a3f8.tar.gz -/uv-0.7.15.tar.gz -/uv-0.7.16.tar.gz -/uv-0.7.17.tar.gz -/uv-0.7.18.tar.gz -/uv-0.7.19.tar.gz -/uv-0.7.20.tar.gz -/uv-0.7.21.tar.gz -/uv-0.7.22.tar.gz -/uv-0.8.0.tar.gz -/uv-0.8.1.tar.gz -/uv-0.8.2.tar.gz -/uv-0.8.3.tar.gz -/uv-0.8.4.tar.gz -/uv-0.8.5.tar.gz -/uv-0.8.6.tar.gz -/rs-async-zip-285e48742b74ab109887d62e1ae79e7c15fd4878.tar.gz -/uv-0.8.7.tar.gz -/uv-0.8.8.tar.gz -/uv-0.8.9.tar.gz -/uv-0.8.10.tar.gz -/uv-0.8.11.tar.gz -/uv-0.8.12.tar.gz -/tokio-tar-f1488188f1d1b54a73eb0c42a8b8f4b9ee87d688.tar.gz -/uv-0.8.13.tar.gz -/uv-0.8.14.tar.gz -/uv-0.8.15.tar.gz -/reqwest-middleware-7650ed76215a962a96d94a79be71c27bffde7ab2.tar.gz -/uv-0.8.16.tar.gz -/uv-0.8.17.tar.gz -/uv-0.8.18.tar.gz -/uv-0.8.19.tar.gz -/uv-0.8.20.tar.gz -/pubgrub-d8efd77673c9a90792da9da31b6c0da7ea8a324b.tar.gz -/uv-0.8.21.tar.gz -/uv-0.8.22.tar.gz -/uv-0.8.23.tar.gz -/uv-0.8.24.tar.gz -/uv-0.9.0.tar.gz -/uv-0.9.1.tar.gz -/uv-0.9.2.tar.gz -/uv-0.9.3.tar.gz -/uv-0.9.4.tar.gz -/uv-0.9.5.tar.gz -/uv-0.9.6.tar.gz -/rs-async-zip-f6a41d32866003c868d03ed791a89c794f61b703.tar.gz -/uv-0.9.7.tar.gz -/uv-0.9.8.tar.gz -/uv-0.9.9.tar.gz -/uv-0.9.10.tar.gz -/uv-0.9.11.tar.gz -/uv-0.9.12.tar.gz -/uv-0.9.13.tar.gz -/uv-0.9.14.tar.gz -/uv-0.9.15.tar.gz -/uv-0.9.16.tar.gz -/uv-0.9.17.tar.gz -/uv-0.9.18.tar.gz -/uv-0.9.20.tar.gz -/uv-0.9.21.tar.gz -/uv-0.9.22.tar.gz -/uv-0.9.26.tar.gz -/uv-0.9.27.tar.gz -/uv-0.9.28.tar.gz -/uv-0.9.29.tar.gz -/uv-0.9.30.tar.gz -/uv-0.10.0.tar.gz -/uv-0.10.1.tar.gz -/uv-0.10.2.tar.gz -/uv-0.10.3.tar.gz -/uv-0.10.4.tar.gz -/uv-0.10.5.tar.gz -/uv-0.10.6.tar.gz -/uv-0.10.7.tar.gz -/uv-0.10.8.tar.gz -/uv-0.10.9.tar.gz -/uv-0.10.10.tar.gz -/uv-0.10.11.tar.gz -/uv-0.10.12.tar.gz -/uv-0.11.2.tar.gz -/uv-0.11.4.tar.gz -/uv-0.11.5.tar.gz -/uv-0.11.6.tar.gz -/uv-0.11.7.tar.gz -/uv-0.11.9.tar.gz -/uv-0.11.10.tar.gz -/uv-0.11.11.tar.gz -/uv-0.11.12.tar.gz -/uv-0.11.14.tar.gz -/uv-0.11.15.tar.gz -/uv-0.11.16.tar.gz -/uv-0.11.18.tar.gz -/uv-0.11.19.tar.gz -/uv-0.11.21.tar.gz -/uv-0.11.22.tar.gz -/uv-0.11.23.tar.gz -/uv-0.11.24.tar.gz -/uv-0.11.25.tar.gz -/uv-0.11.26.tar.gz +/uv-*.tar.gz From e0cb68f3e2b690019a3478ff8fb893fe8a7d184c Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Tue, 7 Jul 2026 06:50:03 +0100 Subject: [PATCH 05/47] Update to 0.11.27 (close RHBZ#2497560) --- 20174.patch | 170 ++++++++++++++++++++++++++++++++++++++++++++++++++++ sources | 2 +- uv.spec | 14 ++++- 3 files changed, 183 insertions(+), 3 deletions(-) create mode 100644 20174.patch diff --git a/20174.patch b/20174.patch new file mode 100644 index 0000000..2ae827b --- /dev/null +++ b/20174.patch @@ -0,0 +1,170 @@ +From c77c2abf16c13b3ef26fae52b6bec97a7abad65b Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 06:57:19 +0100 +Subject: [PATCH 1/4] Add BSD-3-Clause LICENSE file to ecosystem/jupyterlab + +https://github.com/jupyterlab/jupyterlab/raw/refs/tags/v4.6.1/LICENSE +--- + test/ecosystem/jupyterlab/LICENSE | 27 +++++++++++++++++++++++++++ + 1 file changed, 27 insertions(+) + create mode 100644 test/ecosystem/jupyterlab/LICENSE + +diff --git a/test/ecosystem/jupyterlab/LICENSE b/test/ecosystem/jupyterlab/LICENSE +new file mode 100644 +index 0000000000000..c73604f78a1f6 +--- /dev/null ++++ b/test/ecosystem/jupyterlab/LICENSE +@@ -0,0 +1,27 @@ ++Copyright (c) 2015-2025 Project Jupyter Contributors ++All rights reserved. ++ ++Redistribution and use in source and binary forms, with or without ++modification, are permitted provided that the following conditions are met: ++ ++1. Redistributions of source code must retain the above copyright notice, this ++ list of conditions and the following disclaimer. ++ ++2. Redistributions in binary form must reproduce the above copyright notice, ++ this list of conditions and the following disclaimer in the documentation ++ and/or other materials provided with the distribution. ++ ++3. Neither the name of the copyright holder nor the names of its ++ contributors may be used to endorse or promote products derived from ++ this software without specific prior written permission. ++ ++THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" ++AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE ++IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE ++DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE ++FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL ++DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR ++SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER ++CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, ++OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE ++OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. + +From 0561c227905e972b0d415b0170053ce6ec278184 Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 06:58:21 +0100 +Subject: [PATCH 2/4] Add BSD-3-Clause LICENSE file to ecosystem/pandas + +https://github.com/pandas-dev/pandas/raw/refs/tags/v3.0.4/LICENSE +--- + test/ecosystem/pandas/LICENSE | 31 +++++++++++++++++++++++++++++++ + 1 file changed, 31 insertions(+) + create mode 100644 test/ecosystem/pandas/LICENSE + +diff --git a/test/ecosystem/pandas/LICENSE b/test/ecosystem/pandas/LICENSE +new file mode 100644 +index 0000000000000..bd1cc2a30c626 +--- /dev/null ++++ b/test/ecosystem/pandas/LICENSE +@@ -0,0 +1,31 @@ ++BSD 3-Clause License ++ ++Copyright (c) 2008-2011, AQR Capital Management, LLC, Lambda Foundry, Inc. and PyData Development Team ++All rights reserved. ++ ++Copyright (c) 2011-2026, Open source contributors. ++ ++Redistribution and use in source and binary forms, with or without ++modification, are permitted provided that the following conditions are met: ++ ++* Redistributions of source code must retain the above copyright notice, this ++ list of conditions and the following disclaimer. ++ ++* Redistributions in binary form must reproduce the above copyright notice, ++ this list of conditions and the following disclaimer in the documentation ++ and/or other materials provided with the distribution. ++ ++* Neither the name of the copyright holder nor the names of its ++ contributors may be used to endorse or promote products derived from ++ this software without specific prior written permission. ++ ++THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" ++AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE ++IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE ++DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE ++FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL ++DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR ++SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER ++CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, ++OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE ++OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. + +From d21662e1800682b4058dac8bb39079620eb21400 Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 06:59:25 +0100 +Subject: [PATCH 3/4] Add MIT LICENSE file to ecosystem/poetry + +https://github.com/python-poetry/poetry/raw/refs/tags/2.4.1/LICENSE +--- + test/ecosystem/poetry/LICENSE | 20 ++++++++++++++++++++ + 1 file changed, 20 insertions(+) + create mode 100644 test/ecosystem/poetry/LICENSE + +diff --git a/test/ecosystem/poetry/LICENSE b/test/ecosystem/poetry/LICENSE +new file mode 100644 +index 0000000000000..81a8e1e473986 +--- /dev/null ++++ b/test/ecosystem/poetry/LICENSE +@@ -0,0 +1,20 @@ ++Copyright (c) 2018-present Sébastien Eustace ++ ++Permission is hereby granted, free of charge, to any person obtaining ++a copy of this software and associated documentation files (the ++"Software"), to deal in the Software without restriction, including ++without limitation the rights to use, copy, modify, merge, publish, ++distribute, sublicense, and/or sell copies of the Software, and to ++permit persons to whom the Software is furnished to do so, subject to ++the following conditions: ++ ++The above copyright notice and this permission notice shall be ++included in all copies or substantial portions of the Software. ++ ++THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, ++EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF ++MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND ++NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE ++LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION ++OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION ++WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. + +From 708d1e5dfaaaee539308d60dbbfc0faa186885fd Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 07:06:54 +0100 +Subject: [PATCH 4/4] Add MIT LICENSE file to ecosystem/semantic-kernel + +https://github.com/microsoft/semantic-kernel/raw/refs/tags/python-1.43.1/python/LICENSE +--- + test/ecosystem/semantic-kernel/LICENSE | 21 +++++++++++++++++++++ + 1 file changed, 21 insertions(+) + create mode 100644 test/ecosystem/semantic-kernel/LICENSE + +diff --git a/test/ecosystem/semantic-kernel/LICENSE b/test/ecosystem/semantic-kernel/LICENSE +new file mode 100644 +index 0000000000000..9e841e7a26e4e +--- /dev/null ++++ b/test/ecosystem/semantic-kernel/LICENSE +@@ -0,0 +1,21 @@ ++ MIT License ++ ++ Copyright (c) Microsoft Corporation. ++ ++ Permission is hereby granted, free of charge, to any person obtaining a copy ++ of this software and associated documentation files (the "Software"), to deal ++ in the Software without restriction, including without limitation the rights ++ to use, copy, modify, merge, publish, distribute, sublicense, and/or sell ++ copies of the Software, and to permit persons to whom the Software is ++ furnished to do so, subject to the following conditions: ++ ++ The above copyright notice and this permission notice shall be included in all ++ copies or substantial portions of the Software. ++ ++ THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR ++ IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, ++ FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE ++ AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER ++ LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, ++ OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE ++ SOFTWARE diff --git a/sources b/sources index f0835cd..19d1ff0 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.26.tar.gz) = 8be3842d1a534765a99a130a857c860a2b6ec2dd517cbdff7f697db55500d1092b4f323459625d433635f3559a058eef98140eb65b1082394994d72c5d329ee1 +SHA512 (uv-0.11.27.tar.gz) = a3a019d752d359487b330d05ab2a1dd8520f5b1e8f773c0dc5935693a9572d8b8f7b21e49e5fc76f9e2436aee3ced090e80dd0f3e1274caeb6558a67119b0a88 diff --git a/uv.spec b/uv.spec index 6fd3ea5..cb64787 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.26 +Version: 0.11.27 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See @@ -65,12 +65,16 @@ Summary: An extremely fast Python package installer and resolver, written # BSD-2-Clause-Patent: # - test/ecosystem/github-wikidata-bot/ # BSD-3-Clause: +# - test/ecosystem/jupyterlab/ +# - test/ecosystem/pandas/ # - test/ecosystem/saleor/ # MIT: # - crates/uv-python/fetch-download-metadata.py is derived from # https://github.com/mitsuhiko/rye/tree/f9822267a7f00332d15be8551f89a212e7bc9017 # which was MIT. # - test/ecosystem/black/ +# - test/ecosystem/poetry/ +# - test/ecosystem/semantic-kernel/ # # Rust crates compiled into the executable contribute additional license terms. # To obtain the following list of licenses, build the package and note the @@ -148,6 +152,9 @@ Source1: uv.toml # Should uv.find_uv_bin() be able to find /usr/bin/uv? # https://github.com/astral-sh/uv/issues/4451 Patch: 0001-Downstream-patch-always-find-the-system-wide-uv-exec.patch +# Add license texts for new contents of test/ecosystem/ from PR#20068 +# https://github.com/astral-sh/uv/pull/20174 +Patch: %{url}/pull/20174.patch # https://fedoraproject.org/wiki/Changes/EncourageI686LeafRemoval ExcludeArch: %{ix86} @@ -645,10 +652,13 @@ skip="${skip-} --skip tests::built_by_uv_building" # dependency version differing from Cargo.lock. skip="${skip-} --skip base_client::tests::retried_status_codes" -# Harmless and trivial discrepancy in an error message: +# Harmless and trivial discrepancies in error messages: # 8 │- Caused by: error decoding response body for url (http://[LOCALHOST]/tqdm/) # 8 │+ Caused by: error decoding response body skip="${skip-} --skip network::retry_read_timeout_index" +# 9 │- Caused by: error decoding response body for url (http://[LOCALHOST]/) +# 9 │+ Caused by: error decoding response body +skip="${skip-} --skip network::retry_read_timeout_python_downloads_json" # These fail flakily: most frequently on ppc64le, but this seems to be just a # matter of luck, since we suspect a race condition. We have also seen failures From fca0e798ad68c63afbb16cc46affb4de08cfec97 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 8 Jul 2026 09:54:45 +0100 Subject: [PATCH 06/47] Update to 0.11.28 (close RHBZ#2497922) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index 19d1ff0..d3b4af9 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.27.tar.gz) = a3a019d752d359487b330d05ab2a1dd8520f5b1e8f773c0dc5935693a9572d8b8f7b21e49e5fc76f9e2436aee3ced090e80dd0f3e1274caeb6558a67119b0a88 +SHA512 (uv-0.11.28.tar.gz) = b1e0468d714e70e7f4b1c9a3348ff8d7499cf463d9b59272347bfa38cc5d4d96c3913bf6c05222b26f098331cd84a3f495c4d5a4d872b45d5e735393cc3415ad diff --git a/uv.spec b/uv.spec index cb64787..070fad3 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.27 +Version: 0.11.28 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 5b333d4a4eb488d828a480470bba85e6d6417f2e Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Thu, 2 Jul 2026 14:38:42 +0100 Subject: [PATCH 07/47] Simplify .gitignore [skip changelog] --- .gitignore | 223 +---------------------------------------------------- 1 file changed, 1 insertion(+), 222 deletions(-) diff --git a/.gitignore b/.gitignore index 2c78ba6..36e4cb1 100644 --- a/.gitignore +++ b/.gitignore @@ -1,222 +1 @@ -/pubgrub-3f0ba760951ab0deeac874b98bb18fc90103fcf7.tar.gz -/reqwest-middleware-21ceec9a5fd2e8d6f71c3ea2999078fecbd13cbe.tar.gz -/rs-async-zip-011b24604fa7bc223daaad7712c0694bac8f0a87.tar.gz -/uv-0.2.32.tar.gz -/uv-0.2.33.tar.gz -/pubgrub-2fac39371a47e7cb821e510aaa4de25405413d29.tar.gz -/uv-0.2.34.tar.gz -/uv-0.2.35.tar.gz -/uv-0.2.37-filtered.tar.zst -/uv-0.3.0-filtered.tar.zst -/pubgrub-aaef464c1b0d8eea4ff9ffaee4f3458c236d10da.tar.gz -/reqwest-middleware-5e3eaf254b5bd481c75d2710eed055f95b756913.tar.gz -/uv-0.3.2-filtered.tar.zst -/uv-0.3.3-filtered.tar.zst -/pubgrub-388685a8711092971930986644cfed152d1a1f6c.tar.gz -/uv-0.3.4-filtered.tar.zst -/tl-6e25b2ee2513d75385101a8ff9f591ef51f314ec.tar.gz -/uv-0.3.5-filtered.tar.zst -/uv-0.4.0-filtered.tar.zst -/uv-0.4.1-filtered.tar.zst -/uv-0.4.2-filtered.tar.zst -/uv-0.4.4-filtered.tar.zst -/uv-0.4.5-filtered.tar.zst -/uv-0.4.6-filtered.tar.zst -/uv-0.4.7-filtered.tar.zst -/uv-0.4.8-filtered.tar.zst -/uv-0.4.9-filtered.tar.zst -/uv-0.4.10-filtered.tar.zst -/uv-0.4.15.tar.gz -/uv-0.4.16.tar.gz -/uv-0.4.17.tar.gz -/uv-0.4.18.tar.gz -/uv-0.4.19.tar.gz -/uv-0.4.20.tar.gz -/uv-0.4.21.tar.gz -/uv-0.4.22.tar.gz -/uv-0.4.23.tar.gz -/pubgrub-19c77268c0ad5f69d7e12126e0cfacfbba466481.tar.gz -/uv-0.4.24.tar.gz -/uv-0.4.25.tar.gz -/pubgrub-7243f4faf8e54837aa8a401a18406e7173de4ad5.tar.gz -/reqwest-middleware-d95ec5a99fcc9a4339e1850d40378bbfe55ab121.tar.gz -/uv-0.4.26.tar.gz -/uv-0.4.27.tar.gz -/uv-0.4.28.tar.gz -/uv-0.4.29.tar.gz -/pubgrub-95e1390399cdddee986b658be19587eb1fdb2d79.tar.gz -/uv-0.4.30.tar.gz -/uv-0.5.0.tar.gz -/uv-0.5.1.tar.gz -/uv-0.5.2.tar.gz -/rs-async-zip-c909fda63fcafe4af496a07bfda28a5aae97e58d.tar.gz -/uv-0.5.3.tar.gz -/pubgrub-57afc831bf2551f164617a10383cf288bf5d190d.tar.gz -/uv-0.5.4.tar.gz -/uv-0.5.5.tar.gz -/pubgrub-9cd9049a64c7352de2ff3b525b9ae36421b0cc18.tar.gz -/uv-0.5.6.tar.gz -/pubgrub-57832d0588fbb7aab824813481104761dc1c7740.tar.gz -/uv-0.5.7.tar.gz -/uv-0.5.8.tar.gz -/uv-0.5.9.tar.gz -/uv-0.5.10.tar.gz -/pubgrub-05e8d12cea8d72c6d2d017900e478d0abd28fef4.tar.gz -/uv-0.5.11.tar.gz -/uv-0.5.12.tar.gz -/pubgrub-648aa343486e5529953153781fc86025c73c4a61.tar.gz -/uv-0.5.13.tar.gz -/uv-0.5.14.tar.gz -/uv-0.5.15.tar.gz -/uv-0.5.16.tar.gz -/uv-0.5.17.tar.gz -/uv-0.5.18.tar.gz -/uv-0.5.19.tar.gz -/uv-0.5.20.tar.gz -/uv-0.5.21.tar.gz -/uv-0.5.22.tar.gz -/uv-0.5.23.tar.gz -/uv-0.5.24.tar.gz -/uv-0.5.25.tar.gz -/uv-0.5.26.tar.gz -/uv-0.5.27.tar.gz -/pubgrub-b70cf707aa43f21b32f3a61b8a0889b15032d5c4.tar.gz -/tokio-tar-ba2b140f27d081c463335f0d68b5f8df8e6c845e.tar.gz -/uv-0.5.28.tar.gz -/tokio-tar-efeaea927c7a40ee66121de2e1bebfd5d7a4a602.tar.gz -/uv-0.5.29.tar.gz -/uv-0.5.30.tar.gz -/uv-0.5.31.tar.gz -/uv-0.6.0.tar.gz -/uv-0.6.1.tar.gz -/uv-0.6.2.tar.gz -/uv-0.6.3.tar.gz -/uv-0.6.4.tar.gz -/uv-0.6.5.tar.gz -/uv-0.6.6.tar.gz -/uv-0.6.7.tar.gz -/uv-0.6.8.tar.gz -/uv-0.6.9.tar.gz -/uv-0.6.10.tar.gz -/uv-0.6.11.tar.gz -/uv-0.6.12.tar.gz -/uv-0.6.13.tar.gz -/uv-0.6.14.tar.gz -/uv-0.6.16.tar.gz -/uv-0.6.17.tar.gz -/pubgrub-a3b4db3abb1829ce889fb89fa6d157fef529ef7e.tar.gz -/uv-0.7.0.tar.gz -/uv-0.7.1.tar.gz -/uv-0.7.2.tar.gz -/uv-0.7.3.tar.gz -/uv-0.7.4.tar.gz -/pubgrub-73d6ecf5a4e4eb1c754b8c3255c4d31bdc266fdb.tar.gz -/uv-0.7.5.tar.gz -/uv-0.7.6.tar.gz -/uv-0.7.8.tar.gz -/pubgrub-06ec5a5f59ffaeb6cf5079c6cb184467da06c9db.tar.gz -/uv-0.7.9.tar.gz -/uv-0.7.10.tar.gz -/uv-0.7.11.tar.gz -/uv-0.7.12.tar.gz -/uv-0.7.13.tar.gz -/uv-0.7.14.tar.gz -/reqwest-middleware-ad8b9d332d1773fde8b4cd008486de5973e0a3f8.tar.gz -/uv-0.7.15.tar.gz -/uv-0.7.16.tar.gz -/uv-0.7.17.tar.gz -/uv-0.7.18.tar.gz -/uv-0.7.19.tar.gz -/uv-0.7.20.tar.gz -/uv-0.7.21.tar.gz -/uv-0.7.22.tar.gz -/uv-0.8.0.tar.gz -/uv-0.8.1.tar.gz -/uv-0.8.2.tar.gz -/uv-0.8.3.tar.gz -/uv-0.8.4.tar.gz -/uv-0.8.5.tar.gz -/uv-0.8.6.tar.gz -/rs-async-zip-285e48742b74ab109887d62e1ae79e7c15fd4878.tar.gz -/uv-0.8.7.tar.gz -/uv-0.8.8.tar.gz -/uv-0.8.9.tar.gz -/uv-0.8.10.tar.gz -/uv-0.8.11.tar.gz -/uv-0.8.12.tar.gz -/tokio-tar-f1488188f1d1b54a73eb0c42a8b8f4b9ee87d688.tar.gz -/uv-0.8.13.tar.gz -/uv-0.8.14.tar.gz -/uv-0.8.15.tar.gz -/reqwest-middleware-7650ed76215a962a96d94a79be71c27bffde7ab2.tar.gz -/uv-0.8.16.tar.gz -/uv-0.8.17.tar.gz -/uv-0.8.18.tar.gz -/uv-0.8.19.tar.gz -/uv-0.8.20.tar.gz -/pubgrub-d8efd77673c9a90792da9da31b6c0da7ea8a324b.tar.gz -/uv-0.8.21.tar.gz -/uv-0.8.22.tar.gz -/uv-0.8.23.tar.gz -/uv-0.8.24.tar.gz -/uv-0.9.0.tar.gz -/uv-0.9.1.tar.gz -/uv-0.9.2.tar.gz -/uv-0.9.3.tar.gz -/uv-0.9.4.tar.gz -/uv-0.9.5.tar.gz -/uv-0.9.6.tar.gz -/rs-async-zip-f6a41d32866003c868d03ed791a89c794f61b703.tar.gz -/uv-0.9.7.tar.gz -/uv-0.9.8.tar.gz -/uv-0.9.9.tar.gz -/uv-0.9.10.tar.gz -/uv-0.9.11.tar.gz -/uv-0.9.12.tar.gz -/uv-0.9.13.tar.gz -/uv-0.9.14.tar.gz -/uv-0.9.15.tar.gz -/uv-0.9.16.tar.gz -/uv-0.9.17.tar.gz -/uv-0.9.18.tar.gz -/uv-0.9.20.tar.gz -/uv-0.9.21.tar.gz -/uv-0.9.22.tar.gz -/uv-0.9.26.tar.gz -/uv-0.9.27.tar.gz -/uv-0.9.28.tar.gz -/uv-0.9.29.tar.gz -/uv-0.9.30.tar.gz -/uv-0.10.0.tar.gz -/uv-0.10.1.tar.gz -/uv-0.10.2.tar.gz -/uv-0.10.3.tar.gz -/uv-0.10.4.tar.gz -/uv-0.10.5.tar.gz -/uv-0.10.6.tar.gz -/uv-0.10.7.tar.gz -/uv-0.10.8.tar.gz -/uv-0.10.9.tar.gz -/uv-0.10.10.tar.gz -/uv-0.10.11.tar.gz -/uv-0.10.12.tar.gz -/uv-0.11.2.tar.gz -/uv-0.11.4.tar.gz -/uv-0.11.5.tar.gz -/uv-0.11.6.tar.gz -/uv-0.11.7.tar.gz -/uv-0.11.9.tar.gz -/uv-0.11.10.tar.gz -/uv-0.11.11.tar.gz -/uv-0.11.12.tar.gz -/uv-0.11.14.tar.gz -/uv-0.11.15.tar.gz -/uv-0.11.16.tar.gz -/uv-0.11.18.tar.gz -/uv-0.11.19.tar.gz -/uv-0.11.21.tar.gz -/uv-0.11.22.tar.gz -/uv-0.11.23.tar.gz -/uv-0.11.24.tar.gz -/uv-0.11.25.tar.gz -/uv-0.11.26.tar.gz +/uv-*.tar.gz From 88339570696e0780309b3180d3fb45fee164bfbd Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Tue, 7 Jul 2026 06:50:03 +0100 Subject: [PATCH 08/47] Update to 0.11.27 (close RHBZ#2497560) --- 20174.patch | 170 ++++++++++++++++++++++++++++++++++++++++++++++++++++ sources | 2 +- uv.spec | 14 ++++- 3 files changed, 183 insertions(+), 3 deletions(-) create mode 100644 20174.patch diff --git a/20174.patch b/20174.patch new file mode 100644 index 0000000..2ae827b --- /dev/null +++ b/20174.patch @@ -0,0 +1,170 @@ +From c77c2abf16c13b3ef26fae52b6bec97a7abad65b Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 06:57:19 +0100 +Subject: [PATCH 1/4] Add BSD-3-Clause LICENSE file to ecosystem/jupyterlab + +https://github.com/jupyterlab/jupyterlab/raw/refs/tags/v4.6.1/LICENSE +--- + test/ecosystem/jupyterlab/LICENSE | 27 +++++++++++++++++++++++++++ + 1 file changed, 27 insertions(+) + create mode 100644 test/ecosystem/jupyterlab/LICENSE + +diff --git a/test/ecosystem/jupyterlab/LICENSE b/test/ecosystem/jupyterlab/LICENSE +new file mode 100644 +index 0000000000000..c73604f78a1f6 +--- /dev/null ++++ b/test/ecosystem/jupyterlab/LICENSE +@@ -0,0 +1,27 @@ ++Copyright (c) 2015-2025 Project Jupyter Contributors ++All rights reserved. ++ ++Redistribution and use in source and binary forms, with or without ++modification, are permitted provided that the following conditions are met: ++ ++1. Redistributions of source code must retain the above copyright notice, this ++ list of conditions and the following disclaimer. ++ ++2. Redistributions in binary form must reproduce the above copyright notice, ++ this list of conditions and the following disclaimer in the documentation ++ and/or other materials provided with the distribution. ++ ++3. Neither the name of the copyright holder nor the names of its ++ contributors may be used to endorse or promote products derived from ++ this software without specific prior written permission. ++ ++THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" ++AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE ++IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE ++DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE ++FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL ++DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR ++SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER ++CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, ++OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE ++OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. + +From 0561c227905e972b0d415b0170053ce6ec278184 Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 06:58:21 +0100 +Subject: [PATCH 2/4] Add BSD-3-Clause LICENSE file to ecosystem/pandas + +https://github.com/pandas-dev/pandas/raw/refs/tags/v3.0.4/LICENSE +--- + test/ecosystem/pandas/LICENSE | 31 +++++++++++++++++++++++++++++++ + 1 file changed, 31 insertions(+) + create mode 100644 test/ecosystem/pandas/LICENSE + +diff --git a/test/ecosystem/pandas/LICENSE b/test/ecosystem/pandas/LICENSE +new file mode 100644 +index 0000000000000..bd1cc2a30c626 +--- /dev/null ++++ b/test/ecosystem/pandas/LICENSE +@@ -0,0 +1,31 @@ ++BSD 3-Clause License ++ ++Copyright (c) 2008-2011, AQR Capital Management, LLC, Lambda Foundry, Inc. and PyData Development Team ++All rights reserved. ++ ++Copyright (c) 2011-2026, Open source contributors. ++ ++Redistribution and use in source and binary forms, with or without ++modification, are permitted provided that the following conditions are met: ++ ++* Redistributions of source code must retain the above copyright notice, this ++ list of conditions and the following disclaimer. ++ ++* Redistributions in binary form must reproduce the above copyright notice, ++ this list of conditions and the following disclaimer in the documentation ++ and/or other materials provided with the distribution. ++ ++* Neither the name of the copyright holder nor the names of its ++ contributors may be used to endorse or promote products derived from ++ this software without specific prior written permission. ++ ++THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" ++AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE ++IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE ++DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE ++FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL ++DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR ++SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER ++CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, ++OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE ++OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. + +From d21662e1800682b4058dac8bb39079620eb21400 Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 06:59:25 +0100 +Subject: [PATCH 3/4] Add MIT LICENSE file to ecosystem/poetry + +https://github.com/python-poetry/poetry/raw/refs/tags/2.4.1/LICENSE +--- + test/ecosystem/poetry/LICENSE | 20 ++++++++++++++++++++ + 1 file changed, 20 insertions(+) + create mode 100644 test/ecosystem/poetry/LICENSE + +diff --git a/test/ecosystem/poetry/LICENSE b/test/ecosystem/poetry/LICENSE +new file mode 100644 +index 0000000000000..81a8e1e473986 +--- /dev/null ++++ b/test/ecosystem/poetry/LICENSE +@@ -0,0 +1,20 @@ ++Copyright (c) 2018-present Sébastien Eustace ++ ++Permission is hereby granted, free of charge, to any person obtaining ++a copy of this software and associated documentation files (the ++"Software"), to deal in the Software without restriction, including ++without limitation the rights to use, copy, modify, merge, publish, ++distribute, sublicense, and/or sell copies of the Software, and to ++permit persons to whom the Software is furnished to do so, subject to ++the following conditions: ++ ++The above copyright notice and this permission notice shall be ++included in all copies or substantial portions of the Software. ++ ++THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, ++EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF ++MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND ++NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE ++LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION ++OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION ++WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. + +From 708d1e5dfaaaee539308d60dbbfc0faa186885fd Mon Sep 17 00:00:00 2001 +From: "Benjamin A. Beasley" +Date: Tue, 7 Jul 2026 07:06:54 +0100 +Subject: [PATCH 4/4] Add MIT LICENSE file to ecosystem/semantic-kernel + +https://github.com/microsoft/semantic-kernel/raw/refs/tags/python-1.43.1/python/LICENSE +--- + test/ecosystem/semantic-kernel/LICENSE | 21 +++++++++++++++++++++ + 1 file changed, 21 insertions(+) + create mode 100644 test/ecosystem/semantic-kernel/LICENSE + +diff --git a/test/ecosystem/semantic-kernel/LICENSE b/test/ecosystem/semantic-kernel/LICENSE +new file mode 100644 +index 0000000000000..9e841e7a26e4e +--- /dev/null ++++ b/test/ecosystem/semantic-kernel/LICENSE +@@ -0,0 +1,21 @@ ++ MIT License ++ ++ Copyright (c) Microsoft Corporation. ++ ++ Permission is hereby granted, free of charge, to any person obtaining a copy ++ of this software and associated documentation files (the "Software"), to deal ++ in the Software without restriction, including without limitation the rights ++ to use, copy, modify, merge, publish, distribute, sublicense, and/or sell ++ copies of the Software, and to permit persons to whom the Software is ++ furnished to do so, subject to the following conditions: ++ ++ The above copyright notice and this permission notice shall be included in all ++ copies or substantial portions of the Software. ++ ++ THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR ++ IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, ++ FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE ++ AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER ++ LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, ++ OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE ++ SOFTWARE diff --git a/sources b/sources index f0835cd..19d1ff0 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.26.tar.gz) = 8be3842d1a534765a99a130a857c860a2b6ec2dd517cbdff7f697db55500d1092b4f323459625d433635f3559a058eef98140eb65b1082394994d72c5d329ee1 +SHA512 (uv-0.11.27.tar.gz) = a3a019d752d359487b330d05ab2a1dd8520f5b1e8f773c0dc5935693a9572d8b8f7b21e49e5fc76f9e2436aee3ced090e80dd0f3e1274caeb6558a67119b0a88 diff --git a/uv.spec b/uv.spec index 6fd3ea5..cb64787 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.26 +Version: 0.11.27 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See @@ -65,12 +65,16 @@ Summary: An extremely fast Python package installer and resolver, written # BSD-2-Clause-Patent: # - test/ecosystem/github-wikidata-bot/ # BSD-3-Clause: +# - test/ecosystem/jupyterlab/ +# - test/ecosystem/pandas/ # - test/ecosystem/saleor/ # MIT: # - crates/uv-python/fetch-download-metadata.py is derived from # https://github.com/mitsuhiko/rye/tree/f9822267a7f00332d15be8551f89a212e7bc9017 # which was MIT. # - test/ecosystem/black/ +# - test/ecosystem/poetry/ +# - test/ecosystem/semantic-kernel/ # # Rust crates compiled into the executable contribute additional license terms. # To obtain the following list of licenses, build the package and note the @@ -148,6 +152,9 @@ Source1: uv.toml # Should uv.find_uv_bin() be able to find /usr/bin/uv? # https://github.com/astral-sh/uv/issues/4451 Patch: 0001-Downstream-patch-always-find-the-system-wide-uv-exec.patch +# Add license texts for new contents of test/ecosystem/ from PR#20068 +# https://github.com/astral-sh/uv/pull/20174 +Patch: %{url}/pull/20174.patch # https://fedoraproject.org/wiki/Changes/EncourageI686LeafRemoval ExcludeArch: %{ix86} @@ -645,10 +652,13 @@ skip="${skip-} --skip tests::built_by_uv_building" # dependency version differing from Cargo.lock. skip="${skip-} --skip base_client::tests::retried_status_codes" -# Harmless and trivial discrepancy in an error message: +# Harmless and trivial discrepancies in error messages: # 8 │- Caused by: error decoding response body for url (http://[LOCALHOST]/tqdm/) # 8 │+ Caused by: error decoding response body skip="${skip-} --skip network::retry_read_timeout_index" +# 9 │- Caused by: error decoding response body for url (http://[LOCALHOST]/) +# 9 │+ Caused by: error decoding response body +skip="${skip-} --skip network::retry_read_timeout_python_downloads_json" # These fail flakily: most frequently on ppc64le, but this seems to be just a # matter of luck, since we suspect a race condition. We have also seen failures From 703cfa73aceecff916d2cb68162188f79b8a8624 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 8 Jul 2026 09:54:45 +0100 Subject: [PATCH 09/47] Update to 0.11.28 (close RHBZ#2497922) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index 19d1ff0..d3b4af9 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.27.tar.gz) = a3a019d752d359487b330d05ab2a1dd8520f5b1e8f773c0dc5935693a9572d8b8f7b21e49e5fc76f9e2436aee3ced090e80dd0f3e1274caeb6558a67119b0a88 +SHA512 (uv-0.11.28.tar.gz) = b1e0468d714e70e7f4b1c9a3348ff8d7499cf463d9b59272347bfa38cc5d4d96c3913bf6c05222b26f098331cd84a3f495c4d5a4d872b45d5e735393cc3415ad diff --git a/uv.spec b/uv.spec index cb64787..070fad3 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.27 +Version: 0.11.28 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From d0b910216ecd1b608cecff2ed50874ec976e6a1d Mon Sep 17 00:00:00 2001 From: Fedora Release Engineering Date: Fri, 17 Jul 2026 08:19:10 +0000 Subject: [PATCH 10/47] Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild From f3fac865ad5f22d0c2cc4d028789cd789305d7c2 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sat, 18 Jul 2026 08:07:42 +0100 Subject: [PATCH 11/47] Trivial whitespace reformatting [skip changelog] --- uv.spec | 54 +++++++++++++++++++++++++++--------------------------- 1 file changed, 27 insertions(+), 27 deletions(-) diff --git a/uv.spec b/uv.spec index 070fad3..b5de105 100644 --- a/uv.spec +++ b/uv.spec @@ -113,33 +113,33 @@ Summary: An extremely fast Python package installer and resolver, written # Zlib # bzip2-1.0.6 License: %{shrink: - 0BSD AND - (0BSD OR Apache-2.0 OR MIT) AND - Apache-2.0 AND - (Apache-2.0 OR BSD-2-Clause) AND - (Apache-2.0 OR BSD-2-Clause OR MIT) AND - (Apache-2.0 OR BSL-1.0) AND - (Apache-2.0 OR ISC OR MIT) AND - (Apache-2.0 OR MIT) AND - (Apache-2.0 OR MIT OR Zlib) AND - (Apache-2.0 OR MIT-0) AND - (Apache-2.0 WITH LLVM-exception) AND - (Apache-2.0 WITH LLVM-exception OR Apache-2.0 OR MIT) AND - BSD-3-Clause AND - CC0-1.0 AND - CDLA-Permissive-2.0 AND - ISC AND - (LGPL-3.0-or-later OR MIT) AND - (LGPL-3.0-or-later OR MPL-2.0) AND - MIT AND - MIT-0 AND - (MIT OR Unlicense) AND - MPL-2.0 AND - Unicode-3.0 AND - Unicode-DFS-2016 AND - Zlib AND - bzip2-1.0.6 - } + 0BSD AND + (0BSD OR Apache-2.0 OR MIT) AND + Apache-2.0 AND + (Apache-2.0 OR BSD-2-Clause) AND + (Apache-2.0 OR BSD-2-Clause OR MIT) AND + (Apache-2.0 OR BSL-1.0) AND + (Apache-2.0 OR ISC OR MIT) AND + (Apache-2.0 OR MIT) AND + (Apache-2.0 OR MIT OR Zlib) AND + (Apache-2.0 OR MIT-0) AND + (Apache-2.0 WITH LLVM-exception) AND + (Apache-2.0 WITH LLVM-exception OR Apache-2.0 OR MIT) AND + BSD-3-Clause AND + CC0-1.0 AND + CDLA-Permissive-2.0 AND + ISC AND + (LGPL-3.0-or-later OR MIT) AND + (LGPL-3.0-or-later OR MPL-2.0) AND + MIT AND + MIT-0 AND + (MIT OR Unlicense) AND + MPL-2.0 AND + Unicode-3.0 AND + Unicode-DFS-2016 AND + Zlib AND + bzip2-1.0.6 + } # LICENSE.dependencies contains a full license breakdown URL: https://github.com/astral-sh/uv Source0: %{url}/archive/%{version}/uv-%{version}.tar.gz From 9df354a5935d9f5979e6a7f9f1f98b33500861a6 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sat, 18 Jul 2026 08:16:51 +0100 Subject: [PATCH 12/47] Avoid OOM on builders with relatively little total memory --- uv.spec | 22 +++++++++++++--------- 1 file changed, 13 insertions(+), 9 deletions(-) diff --git a/uv.spec b/uv.spec index b5de105..6ba0a89 100644 --- a/uv.spec +++ b/uv.spec @@ -168,15 +168,19 @@ ExcludeArch: %{ix86} # https://doc.rust-lang.org/rustc/codegen-options/index.html#debuginfo %global rustflags_debuginfo 1 -# As a separate limitation, memory exhaustion can occur on builders with very -# many CPUs. Typical workspace crates peak out at 2-4 GB per rustc invocation. -# The uv crate needs much more memory to compile and link, but in practice it -# is also compiled alone after all the other crates have finished, so it does -# not need to influence (and does not benefit from) this setting. This setting -# does not necessarily have to reflect the maximum memory required to compile a -# workspace crate; keeping it well above the average suffices in practice on -# many-core systems. Increase as needed. -%global _smp_tasksize_proc 4096 +# As a separate limitation, memory exhaustion (OOM) can occur during parallel +# portions of the build. +# - Because very many workspace crates can be built in parallel, builders with +# a very large number of CPUs may OOM. Typical workspace crates peak out at +# roughly 2–4 GB per rustc process. +# - The uv crate needs much more memory to compile and link, at least 8 GB, and +# when building the tests we may be building bin and lib versions at the same +# time, along with the it (integration test) crate, which is also rather +# large. This is a problem for “low memory” builders (<20 GB or so). +# Unfortunately, this means that we need to scale the memory per task based on +# the memory requirements of the top-level uv crate in order to avoid OOM on +# all kinds of builders. +%global _smp_tasksize_proc 10240 # Compilation may fail on builders with very many cores (e.g. 192 cores) due to # “too many open files.” Try to keep the files/core ratio from getting too low. From b1708e040e988ea5807df537ffeee35f72362391 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 06:32:17 +0100 Subject: [PATCH 13/47] Update to 0.11.31 (close RHBZ#2501168) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index d3b4af9..7ad4c3c 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.28.tar.gz) = b1e0468d714e70e7f4b1c9a3348ff8d7499cf463d9b59272347bfa38cc5d4d96c3913bf6c05222b26f098331cd84a3f495c4d5a4d872b45d5e735393cc3415ad +SHA512 (uv-0.11.31.tar.gz) = 7ae3789adccaf9fafcbb55843c719ff7167d33905587a34b2b423d04203204dcbfa9fcb8c6584ff10400d26ea71e8f44999c420511bd992ea7dfb25504b68d09 diff --git a/uv.spec b/uv.spec index 6ba0a89..6e0af43 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.28 +Version: 0.11.31 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From fb4d6e09d181dccc529b240513b7840001f35e17 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sat, 18 Jul 2026 08:07:42 +0100 Subject: [PATCH 14/47] Trivial whitespace reformatting [skip changelog] --- uv.spec | 54 +++++++++++++++++++++++++++--------------------------- 1 file changed, 27 insertions(+), 27 deletions(-) diff --git a/uv.spec b/uv.spec index 070fad3..b5de105 100644 --- a/uv.spec +++ b/uv.spec @@ -113,33 +113,33 @@ Summary: An extremely fast Python package installer and resolver, written # Zlib # bzip2-1.0.6 License: %{shrink: - 0BSD AND - (0BSD OR Apache-2.0 OR MIT) AND - Apache-2.0 AND - (Apache-2.0 OR BSD-2-Clause) AND - (Apache-2.0 OR BSD-2-Clause OR MIT) AND - (Apache-2.0 OR BSL-1.0) AND - (Apache-2.0 OR ISC OR MIT) AND - (Apache-2.0 OR MIT) AND - (Apache-2.0 OR MIT OR Zlib) AND - (Apache-2.0 OR MIT-0) AND - (Apache-2.0 WITH LLVM-exception) AND - (Apache-2.0 WITH LLVM-exception OR Apache-2.0 OR MIT) AND - BSD-3-Clause AND - CC0-1.0 AND - CDLA-Permissive-2.0 AND - ISC AND - (LGPL-3.0-or-later OR MIT) AND - (LGPL-3.0-or-later OR MPL-2.0) AND - MIT AND - MIT-0 AND - (MIT OR Unlicense) AND - MPL-2.0 AND - Unicode-3.0 AND - Unicode-DFS-2016 AND - Zlib AND - bzip2-1.0.6 - } + 0BSD AND + (0BSD OR Apache-2.0 OR MIT) AND + Apache-2.0 AND + (Apache-2.0 OR BSD-2-Clause) AND + (Apache-2.0 OR BSD-2-Clause OR MIT) AND + (Apache-2.0 OR BSL-1.0) AND + (Apache-2.0 OR ISC OR MIT) AND + (Apache-2.0 OR MIT) AND + (Apache-2.0 OR MIT OR Zlib) AND + (Apache-2.0 OR MIT-0) AND + (Apache-2.0 WITH LLVM-exception) AND + (Apache-2.0 WITH LLVM-exception OR Apache-2.0 OR MIT) AND + BSD-3-Clause AND + CC0-1.0 AND + CDLA-Permissive-2.0 AND + ISC AND + (LGPL-3.0-or-later OR MIT) AND + (LGPL-3.0-or-later OR MPL-2.0) AND + MIT AND + MIT-0 AND + (MIT OR Unlicense) AND + MPL-2.0 AND + Unicode-3.0 AND + Unicode-DFS-2016 AND + Zlib AND + bzip2-1.0.6 + } # LICENSE.dependencies contains a full license breakdown URL: https://github.com/astral-sh/uv Source0: %{url}/archive/%{version}/uv-%{version}.tar.gz From 8b86f3ea0da0ea62226690491d87a3471bfef774 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sat, 18 Jul 2026 08:16:51 +0100 Subject: [PATCH 15/47] Avoid OOM on builders with relatively little total memory --- uv.spec | 22 +++++++++++++--------- 1 file changed, 13 insertions(+), 9 deletions(-) diff --git a/uv.spec b/uv.spec index b5de105..6ba0a89 100644 --- a/uv.spec +++ b/uv.spec @@ -168,15 +168,19 @@ ExcludeArch: %{ix86} # https://doc.rust-lang.org/rustc/codegen-options/index.html#debuginfo %global rustflags_debuginfo 1 -# As a separate limitation, memory exhaustion can occur on builders with very -# many CPUs. Typical workspace crates peak out at 2-4 GB per rustc invocation. -# The uv crate needs much more memory to compile and link, but in practice it -# is also compiled alone after all the other crates have finished, so it does -# not need to influence (and does not benefit from) this setting. This setting -# does not necessarily have to reflect the maximum memory required to compile a -# workspace crate; keeping it well above the average suffices in practice on -# many-core systems. Increase as needed. -%global _smp_tasksize_proc 4096 +# As a separate limitation, memory exhaustion (OOM) can occur during parallel +# portions of the build. +# - Because very many workspace crates can be built in parallel, builders with +# a very large number of CPUs may OOM. Typical workspace crates peak out at +# roughly 2–4 GB per rustc process. +# - The uv crate needs much more memory to compile and link, at least 8 GB, and +# when building the tests we may be building bin and lib versions at the same +# time, along with the it (integration test) crate, which is also rather +# large. This is a problem for “low memory” builders (<20 GB or so). +# Unfortunately, this means that we need to scale the memory per task based on +# the memory requirements of the top-level uv crate in order to avoid OOM on +# all kinds of builders. +%global _smp_tasksize_proc 10240 # Compilation may fail on builders with very many cores (e.g. 192 cores) due to # “too many open files.” Try to keep the files/core ratio from getting too low. From 90745185da0e5728717ef8493b12f56fc4b0a17f Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 06:32:17 +0100 Subject: [PATCH 16/47] Update to 0.11.31 (close RHBZ#2501168) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index d3b4af9..7ad4c3c 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.28.tar.gz) = b1e0468d714e70e7f4b1c9a3348ff8d7499cf463d9b59272347bfa38cc5d4d96c3913bf6c05222b26f098331cd84a3f495c4d5a4d872b45d5e735393cc3415ad +SHA512 (uv-0.11.31.tar.gz) = 7ae3789adccaf9fafcbb55843c719ff7167d33905587a34b2b423d04203204dcbfa9fcb8c6584ff10400d26ea71e8f44999c420511bd992ea7dfb25504b68d09 diff --git a/uv.spec b/uv.spec index 6ba0a89..6e0af43 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined el10} Name: uv -Version: 0.11.28 +Version: 0.11.31 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 6110b4aebe95585bf6857eb4c6adc334546440cb Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 07:17:53 +0100 Subject: [PATCH 17/47] Adjust the other_python_versions bcond to default off on all EPELs [skip changelog] --- uv.spec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index 6e0af43..90199a3 100644 --- a/uv.spec +++ b/uv.spec @@ -2,7 +2,7 @@ # Should we run tests that require specific Python interpreter versions # (major.minor, not major.minor.patch)? This adds a few dozen tests, but adds # BuildRequires on more Python interpreters (which aren’t available in EPEL). -%bcond other_python_versions %{undefined el10} +%bcond other_python_versions %{undefined epel} Name: uv Version: 0.11.31 From 6e7b6c01ad0794e214459770352a154e00e32185 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 07:19:47 +0100 Subject: [PATCH 18/47] Use pyproject long options --- uv.spec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index 90199a3..15c8874 100644 --- a/uv.spec +++ b/uv.spec @@ -555,7 +555,7 @@ sed --regexp-extended --in-place \ %install %pyproject_install -%pyproject_save_files -L uv +%pyproject_save_files --no-assert-license uv if [ '%{python3_sitearch}' != '%{python3_sitelib}' ] then From 1e53b4b6484ade65dcf6103f7afd362b2a612aed Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 07:22:14 +0100 Subject: [PATCH 19/47] Assert that the .dist-info directory contains license files --- uv.spec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index 15c8874..39ea520 100644 --- a/uv.spec +++ b/uv.spec @@ -555,7 +555,7 @@ sed --regexp-extended --in-place \ %install %pyproject_install -%pyproject_save_files --no-assert-license uv +%pyproject_save_files --assert-license uv if [ '%{python3_sitearch}' != '%{python3_sitelib}' ] then From 958b78c7977e19902abda38e660fc073d74a5655 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 07:24:40 +0100 Subject: [PATCH 20/47] Use the provisional pyproject declarative buildsystem --- uv.spec | 23 ++++++++--------------- 1 file changed, 8 insertions(+), 15 deletions(-) diff --git a/uv.spec b/uv.spec index 39ea520..331ca44 100644 --- a/uv.spec +++ b/uv.spec @@ -156,6 +156,9 @@ Patch: 0001-Downstream-patch-always-find-the-system-wide-uv-exec.patch # https://github.com/astral-sh/uv/pull/20174 Patch: %{url}/pull/20174.patch +BuildSystem: pyproject +BuildOption(install): --assert-license uv + # https://fedoraproject.org/wiki/Changes/EncourageI686LeafRemoval ExcludeArch: %{ix86} @@ -354,9 +357,7 @@ Requires: uv = %{version}-%{release} This package provides an importable Python module for uv. -%prep -%autosetup -p1 - +%prep -a # Collect license files of vendored dependencies in the main source archive install -D --preserve-timestamps --mode=0644 \ --target=LICENSE.bundled/packaging \ @@ -531,7 +532,7 @@ sed --regexp-extended --in-place \ %cargo_prep -%generate_buildrequires +%generate_buildrequires -p # For unclear reasons, maturin checks for all crate dependencies when it is # invoked as part of %%pyproject_buildrequires – including those corresponding # to optional features. @@ -543,20 +544,14 @@ sed --regexp-extended --in-place \ # Since maturin always checks for dev-dependencies, we need -t so that they are # generated even when the “check” bcond is disabled. %cargo_generate_buildrequires -a -t -%pyproject_buildrequires -%build -%pyproject_wheel - +%build -a %{cargo_license_summary} %{cargo_license} > LICENSE.dependencies -%install -%pyproject_install -%pyproject_save_files --assert-license uv - +%install -a if [ '%{python3_sitearch}' != '%{python3_sitelib}' ] then # Maturin is really designed to build compiled Python extensions, but (when @@ -587,7 +582,7 @@ install -D --preserve-timestamps --mode=0644 \ --target='%{buildroot}%{_sysconfdir}/uv' '%{SOURCE1}' -%check +%check -a %if %{with check} # These tests rely on debug assertions, and fail when tests are compiled in # release mode: @@ -683,8 +678,6 @@ skip="${skip-} --skip user_agent_version::test_user_agent_has_version" %cargo_test -- -- --exact ${skip-} %endif -%pyproject_check_import - %files %license LICENSE-APACHE LICENSE-MIT LICENSE.dependencies LICENSE.bundled/ From 6185988208948efce4d2ee58404bf8f0fe15eb86 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 07:17:53 +0100 Subject: [PATCH 21/47] Adjust the other_python_versions bcond to default off on all EPELs [skip changelog] --- uv.spec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index 6e0af43..90199a3 100644 --- a/uv.spec +++ b/uv.spec @@ -2,7 +2,7 @@ # Should we run tests that require specific Python interpreter versions # (major.minor, not major.minor.patch)? This adds a few dozen tests, but adds # BuildRequires on more Python interpreters (which aren’t available in EPEL). -%bcond other_python_versions %{undefined el10} +%bcond other_python_versions %{undefined epel} Name: uv Version: 0.11.31 From 8896e99313a1d92fa2c73f78fff612f0c1f03d17 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 22 Jul 2026 07:22:14 +0100 Subject: [PATCH 22/47] Assert that the .dist-info directory contains license files --- uv.spec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index 90199a3..18bc279 100644 --- a/uv.spec +++ b/uv.spec @@ -555,7 +555,7 @@ sed --regexp-extended --in-place \ %install %pyproject_install -%pyproject_save_files -L uv +%pyproject_save_files -l uv if [ '%{python3_sitearch}' != '%{python3_sitelib}' ] then From 97c5cc15eec2ba5cde5fbebeb4bfceb3b1440ce1 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 24 Jul 2026 08:14:45 +0100 Subject: [PATCH 23/47] Skip some tests related to managed interpreters on riscv64 --- uv.spec | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/uv.spec b/uv.spec index 331ca44..19e1c77 100644 --- a/uv.spec +++ b/uv.spec @@ -615,6 +615,16 @@ skip="${skip-} --skip python_list::python_list_with_mirrors" # This might be worth reporting upstream, but is not a serious issue. skip="${skip-} --skip python_pin::python_pin_resolve" %endif +%ifarch riscv64 +# These expect managed interpreters of the form +# cpython-3.##-linux-riscv64gc-any, but crates/uv-python/download-metadata.json +# only has them for cpython-3.##-linux-riscv64-gnu. It’s not weird to find +# holes in the managed interpreter support matrix for less common +# architectures. +skip="${skip-} --skip python_find::python_find" +skip="${skip-} --skip python_list::python_list" +skip="${skip-} --skip python_pin::python_pin_resolve" +%endif # Test registry_client::tests::test_redirect_to_server_with_credentials is # flaky # https://github.com/astral-sh/uv/issues/16447 From 4bd686691f8a8062d302248d884ff601aa1a1417 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 24 Jul 2026 06:48:49 +0100 Subject: [PATCH 24/47] Update to 0.11.32 (close RHBZ#2506667) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index 7ad4c3c..ea9a774 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.31.tar.gz) = 7ae3789adccaf9fafcbb55843c719ff7167d33905587a34b2b423d04203204dcbfa9fcb8c6584ff10400d26ea71e8f44999c420511bd992ea7dfb25504b68d09 +SHA512 (uv-0.11.32.tar.gz) = cd1c810400b0712f93fa8dd56ca55b726c22e33f8655ab48011f34f8c2a69d8f517ccd758f0cc0a3a293ee1eae2bac994577073d3e2cd7449ff7a43ba2f88194 diff --git a/uv.spec b/uv.spec index 19e1c77..ad26642 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.11.31 +Version: 0.11.32 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 4c941abc60e7a12c704ded42148d148e2a38255c Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 24 Jul 2026 08:14:45 +0100 Subject: [PATCH 25/47] Skip some tests related to managed interpreters on riscv64 --- uv.spec | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/uv.spec b/uv.spec index 18bc279..ce930a0 100644 --- a/uv.spec +++ b/uv.spec @@ -620,6 +620,16 @@ skip="${skip-} --skip python_list::python_list_with_mirrors" # This might be worth reporting upstream, but is not a serious issue. skip="${skip-} --skip python_pin::python_pin_resolve" %endif +%ifarch riscv64 +# These expect managed interpreters of the form +# cpython-3.##-linux-riscv64gc-any, but crates/uv-python/download-metadata.json +# only has them for cpython-3.##-linux-riscv64-gnu. It’s not weird to find +# holes in the managed interpreter support matrix for less common +# architectures. +skip="${skip-} --skip python_find::python_find" +skip="${skip-} --skip python_list::python_list" +skip="${skip-} --skip python_pin::python_pin_resolve" +%endif # Test registry_client::tests::test_redirect_to_server_with_credentials is # flaky # https://github.com/astral-sh/uv/issues/16447 From 369aa45b0b755042768cea0d9c8c2f2d288da1a3 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 24 Jul 2026 06:48:49 +0100 Subject: [PATCH 26/47] Update to 0.11.32 (close RHBZ#2506667) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index 7ad4c3c..ea9a774 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.31.tar.gz) = 7ae3789adccaf9fafcbb55843c719ff7167d33905587a34b2b423d04203204dcbfa9fcb8c6584ff10400d26ea71e8f44999c420511bd992ea7dfb25504b68d09 +SHA512 (uv-0.11.32.tar.gz) = cd1c810400b0712f93fa8dd56ca55b726c22e33f8655ab48011f34f8c2a69d8f517ccd758f0cc0a3a293ee1eae2bac994577073d3e2cd7449ff7a43ba2f88194 diff --git a/uv.spec b/uv.spec index ce930a0..b6e5263 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.11.31 +Version: 0.11.32 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From e0e68f579822eba4c8763485dd3a8e598e77a037 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Mon, 27 Jul 2026 06:57:16 +0100 Subject: [PATCH 27/47] Skip a test that fails in emulated chroots --- uv.spec | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/uv.spec b/uv.spec index ad26642..0a147d9 100644 --- a/uv.spec +++ b/uv.spec @@ -625,6 +625,15 @@ skip="${skip-} --skip python_find::python_find" skip="${skip-} --skip python_list::python_list" skip="${skip-} --skip python_pin::python_pin_resolve" %endif + +# It’s not clear what causes the trivial discrepancy, but we find that this +# fails when building in qemu-user-static emulated chroots. +# 4 │- Caused by: Failed to query Python interpreter at `[TEMP_DIR]/bar` +# 5 │- Caused by: [PERMISSION DENIED] +# 4 │+ Caused by: Querying Python at `[TEMP_DIR]/bar` failed with +# exit status exit status: 127 +skip="${skip-} --skip python_find::python_find_path" + # Test registry_client::tests::test_redirect_to_server_with_credentials is # flaky # https://github.com/astral-sh/uv/issues/16447 From e04993a93c5e04c634e3885bde6a0d35680a6369 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Mon, 27 Jul 2026 06:57:16 +0100 Subject: [PATCH 28/47] Skip a test that fails in emulated chroots --- uv.spec | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/uv.spec b/uv.spec index b6e5263..5936576 100644 --- a/uv.spec +++ b/uv.spec @@ -630,6 +630,15 @@ skip="${skip-} --skip python_find::python_find" skip="${skip-} --skip python_list::python_list" skip="${skip-} --skip python_pin::python_pin_resolve" %endif + +# It’s not clear what causes the trivial discrepancy, but we find that this +# fails when building in qemu-user-static emulated chroots. +# 4 │- Caused by: Failed to query Python interpreter at `[TEMP_DIR]/bar` +# 5 │- Caused by: [PERMISSION DENIED] +# 4 │+ Caused by: Querying Python at `[TEMP_DIR]/bar` failed with +# exit status exit status: 127 +skip="${skip-} --skip python_find::python_find_path" + # Test registry_client::tests::test_redirect_to_server_with_credentials is # flaky # https://github.com/astral-sh/uv/issues/16447 From 3683e38d1d9e4d46f9cc2b56a2491fcb7e49f8b7 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 31 Jul 2026 07:27:17 +0100 Subject: [PATCH 29/47] Update to 0.11.33 --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index ea9a774..7f2a53e 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.32.tar.gz) = cd1c810400b0712f93fa8dd56ca55b726c22e33f8655ab48011f34f8c2a69d8f517ccd758f0cc0a3a293ee1eae2bac994577073d3e2cd7449ff7a43ba2f88194 +SHA512 (uv-0.11.33.tar.gz) = eebc671598b627b9c152da0bad7b3a723788d517b919b0be6db7bea15f89188df613ec04e0b5f1ce189d333faaabbda6649c0ef2f031bd6159cb36aac1c409b6 diff --git a/uv.spec b/uv.spec index 0a147d9..f47bc93 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.11.32 +Version: 0.11.33 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 3cbb6c04d81ed6ba25abacde4b594954181607b6 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 31 Jul 2026 16:29:06 +0100 Subject: [PATCH 30/47] Update to 0.12.0 --- sources | 2 +- uv.spec | 14 ++------------ 2 files changed, 3 insertions(+), 13 deletions(-) diff --git a/sources b/sources index 7f2a53e..ee4c492 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.33.tar.gz) = eebc671598b627b9c152da0bad7b3a723788d517b919b0be6db7bea15f89188df613ec04e0b5f1ce189d333faaabbda6649c0ef2f031bd6159cb36aac1c409b6 +SHA512 (uv-0.12.0.tar.gz) = 9dfcb42b4d74c9f26dbb4e6b5ed1a424aafd3c4c2920766682f9d0fa5e54f52a6e9c76fd8d78bc10f6bc0054daed7e339bb01cc79d5114fd51cfc67a27186558 diff --git a/uv.spec b/uv.spec index f47bc93..7d06664 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.11.33 +Version: 0.12.0 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See @@ -111,7 +111,6 @@ Summary: An extremely fast Python package installer and resolver, written # Unicode-3.0 # Unlicense OR MIT # Zlib -# bzip2-1.0.6 License: %{shrink: 0BSD AND (0BSD OR Apache-2.0 OR MIT) AND @@ -137,8 +136,7 @@ License: %{shrink: MPL-2.0 AND Unicode-3.0 AND Unicode-DFS-2016 AND - Zlib AND - bzip2-1.0.6 + Zlib } # LICENSE.dependencies contains a full license breakdown URL: https://github.com/astral-sh/uv @@ -427,14 +425,6 @@ tomcli set Cargo.toml append workspace.exclude crates/uv-bench # needed here. It also brings extra dependencies that we would prefer to avoid. tomcli set Cargo.toml append workspace.exclude crates/uv-dev -# Do not request static linking of anything (particularly, liblzma) -tomcli set Cargo.toml lists delitem \ - workspace.dependencies.xz2.features 'static' -tomcli set crates/uv/Cargo.toml lists delitem \ - features.default 'uv-distribution/static' -tomcli set crates/uv-distribution/Cargo.toml del features.static -tomcli set crates/uv-extract/Cargo.toml del features.static - # Disable several default features that control which tests are compiled and # executed, and which are not usable in offline builds: # From 7f903f9dcee7f7a5ae7d45c5e906da9eba520288 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sun, 2 Aug 2026 11:58:22 +0100 Subject: [PATCH 31/47] Update to 0.12.1 (close RHBZ#2509887) --- sources | 2 +- uv-0.12.1-revert-blake2-beta.patch | 11 +++++++++++ uv.spec | 15 ++++++++++++++- 3 files changed, 26 insertions(+), 2 deletions(-) create mode 100644 uv-0.12.1-revert-blake2-beta.patch diff --git a/sources b/sources index ee4c492..8c0e819 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.12.0.tar.gz) = 9dfcb42b4d74c9f26dbb4e6b5ed1a424aafd3c4c2920766682f9d0fa5e54f52a6e9c76fd8d78bc10f6bc0054daed7e339bb01cc79d5114fd51cfc67a27186558 +SHA512 (uv-0.12.1.tar.gz) = 15c84d4b719295c1d9fca178025317d1b808f4c34a572609b78e35382bb12abdc4ba7a3b2bd1bc5576763b655b34b222be15f99c3481419f92a5f74e460ef96f diff --git a/uv-0.12.1-revert-blake2-beta.patch b/uv-0.12.1-revert-blake2-beta.patch new file mode 100644 index 0000000..805ef98 --- /dev/null +++ b/uv-0.12.1-revert-blake2-beta.patch @@ -0,0 +1,11 @@ +diff -Naur uv-0.12.1-original/crates/uv-extract/src/hash.rs uv-0.12.1/crates/uv-extract/src/hash.rs +--- uv-0.12.1-original/crates/uv-extract/src/hash.rs 2026-07-31 20:05:57.000000000 +0100 ++++ uv-0.12.1/crates/uv-extract/src/hash.rs 2026-08-02 11:53:13.406289238 +0100 +@@ -1,4 +1,6 @@ +-use sha2::{Digest, digest::consts::U32}; ++// BLAKE2 still uses the `digest` 0.10 trait, while MD5 and SHA-2 use 0.11. ++use blake2::digest::{Digest as _, consts::U32}; ++use sha2::Digest; + use std::pin::Pin; + use std::task::{Context, Poll}; + use tokio::io::{AsyncReadExt, ReadBuf}; diff --git a/uv.spec b/uv.spec index 7d06664..ccb997f 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.12.0 +Version: 0.12.1 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See @@ -150,6 +150,10 @@ Source1: uv.toml # Should uv.find_uv_bin() be able to find /usr/bin/uv? # https://github.com/astral-sh/uv/issues/4451 Patch: 0001-Downstream-patch-always-find-the-system-wide-uv-exec.patch +# Downstream-only: revert source-code changes from “Upgrade BLAKE2 to unify +# hashing digest versions”, https://github.com/astral-sh/uv/pull/20834. We do +# not wish to upgrade rust-blake2 to a pre-release. +Patch: uv-0.12.1-revert-blake2-beta.patch # Add license texts for new contents of test/ecosystem/ from PR#20068 # https://github.com/astral-sh/uv/pull/20174 Patch: %{url}/pull/20174.patch @@ -519,6 +523,15 @@ sed --regexp-extended --in-place \ 's/^(tikv-jemallocator\b.*version = ")0\.6\.0"/\1>=0.6.0, <0.8.0"/' \ crates/uv-performance-memory-allocator/Cargo.toml +# blake2 +# wanted: 0.11.0-rc.6 +# currently packaged: 0.10.6 +# https://github.com/astral-sh/uv/pull/19735 +# Downstream-only: revert “Upgrade BLAKE2 to unify hashing digest versions”, +# https://github.com/astral-sh/uv/pull/20834. We do not wish to upgrade +# rust-blake2 to a pre-release. There is an anccompanying source-code patch. +tomcli set Cargo.toml str workspace.dependencies.blake2.version 0.10.6 + %cargo_prep From 62bd08e26e6780b14f11aefff1138cfbf8d63b23 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Tue, 4 Aug 2026 23:28:34 +0100 Subject: [PATCH 32/47] Document bundling of rust-netrc crate --- uv.spec | 11 +++++++++++ 1 file changed, 11 insertions(+) diff --git a/uv.spec b/uv.spec index ccb997f..c883739 100644 --- a/uv.spec +++ b/uv.spec @@ -45,6 +45,7 @@ Summary: An extremely fast Python package installer and resolver, written # MIT # - crates/uv-virtualenv/src/activator/ is vendored and forked from # python3dist(virtualenv) +# - crates/uv-netrc/ is vencored from crate(rust-netrc) # # Additionally, the following are bundled/forked but happen to be under the # same (Apache-2.0 OR MIT) terms as uv itself: @@ -274,6 +275,16 @@ Provides: bundled(crate(r-shquote)) = 0.1.1 # appear to be any prospect of unbundling. Provides: bundled(crate(keyring)) = 4.0.0~rc2 +# crates/uv-netrc +# From crates/uv-netrc/README.md, “This crate vendors the rust-netrc parser for +# use by uv. The source was vendored from gribouille/netrc, as published in +# rust-netrc 0.1.2[…]” +# +# Upstream justifies the bundling in +# https://github.com/astral-sh/uv/pull/19409, and the mandatory +# path-to-unbundling query appears in a comment on that PR. +Provides: bundled(crate(rust-netrc)) = 0.1.2 + # The contents of crates/uv-virtualenv/src/activator/ are a bundled and # slightly forked copy of a subset of https://pypi.org/project/virtualenv; see # https://github.com/pypa/virtualenv/tree/main/src/virtualenv/activation. From 049d34581dd3218022c789ccb156813d4d9cd5bb Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 5 Aug 2026 06:57:56 +0100 Subject: [PATCH 33/47] More spec-file comment improvements --- uv.spec | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) diff --git a/uv.spec b/uv.spec index c883739..faf62c8 100644 --- a/uv.spec +++ b/uv.spec @@ -45,7 +45,7 @@ Summary: An extremely fast Python package installer and resolver, written # MIT # - crates/uv-virtualenv/src/activator/ is vendored and forked from # python3dist(virtualenv) -# - crates/uv-netrc/ is vencored from crate(rust-netrc) +# - crates/uv-netrc/ is vendored from crate(rust-netrc) # # Additionally, the following are bundled/forked but happen to be under the # same (Apache-2.0 OR MIT) terms as uv itself: @@ -281,8 +281,11 @@ Provides: bundled(crate(keyring)) = 4.0.0~rc2 # rust-netrc 0.1.2[…]” # # Upstream justifies the bundling in -# https://github.com/astral-sh/uv/pull/19409, and the mandatory -# path-to-unbundling query appears in a comment on that PR. +# https://github.com/astral-sh/uv/pull/19409: they want unreleased bug fixes, +# including those pertaining to https://github.com/astral-sh/uv/issues/16083, +# and to avoid a dependency on thiserror v1. In response to the mandatory +# query, they report they are open to de-vendoring if a new rust-netrc release +# with the desired changes appears. Provides: bundled(crate(rust-netrc)) = 0.1.2 # The contents of crates/uv-virtualenv/src/activator/ are a bundled and From cb8c37590766e95fd2e179086e17359eb6fe7cb0 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 5 Aug 2026 07:00:49 +0100 Subject: [PATCH 34/47] Ship the license file for the vendored rust-netrc --- uv.spec | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index faf62c8..aed7ceb 100644 --- a/uv.spec +++ b/uv.spec @@ -374,7 +374,7 @@ This package provides an importable Python module for uv. %prep -a -# Collect license files of vendored dependencies in the main source archive +# Collect license files of vendored dependencies install -D --preserve-timestamps --mode=0644 \ --target=LICENSE.bundled/packaging \ crates/uv-python/python/packaging/LICENSE.* @@ -387,6 +387,8 @@ install -D --preserve-timestamps --mode=0644 \ crates/uv-build-frontend/src/pipreqs/LICENSE install -D --preserve-timestamps --mode=0644 \ --target=LICENSE.bundled/ripunzip crates/uv-extract/src/vendor/LICENSE +install -D --preserve-timestamps --mode=0644 \ + --target=LICENSE.bundled/rust-netrc crates/uv-netrc/LICENSE # The original license text from rattler_installs_packages is present in a # comment, but we want it in a separate file so we can ensure it is present in # the binary RPM. From 3e1297d8471684a3bde5b8fefdb537a598e460e9 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 5 Aug 2026 08:40:26 +0100 Subject: [PATCH 35/47] Skip another test that flakes due to racy env-vars --- uv.spec | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/uv.spec b/uv.spec index aed7ceb..26fd457 100644 --- a/uv.spec +++ b/uv.spec @@ -712,6 +712,13 @@ skip="${skip-} --skip network::retry_read_timeout_python_downloads_json" skip="${skip-} --skip user_agent_version::test_user_agent_has_linehaul" skip="${skip-} --skip user_agent_version::test_user_agent_has_subcommand" skip="${skip-} --skip user_agent_version::test_user_agent_has_version" +# Similarly, with an error like: +# Client::new(): reqwest::Error { +# kind: Builder, +# source: General("No CA certificates were loaded from the system") +# } +# There are probably more of these. +skip="${skip-} --skip retry::tests::retried_status_codes" %cargo_test -- -- --exact ${skip-} %endif From 535c2350204b4a9699a4906dc2e2308d171cda12 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 31 Jul 2026 07:27:17 +0100 Subject: [PATCH 36/47] Update to 0.11.33 --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index ea9a774..7f2a53e 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.32.tar.gz) = cd1c810400b0712f93fa8dd56ca55b726c22e33f8655ab48011f34f8c2a69d8f517ccd758f0cc0a3a293ee1eae2bac994577073d3e2cd7449ff7a43ba2f88194 +SHA512 (uv-0.11.33.tar.gz) = eebc671598b627b9c152da0bad7b3a723788d517b919b0be6db7bea15f89188df613ec04e0b5f1ce189d333faaabbda6649c0ef2f031bd6159cb36aac1c409b6 diff --git a/uv.spec b/uv.spec index 5936576..3cfbb38 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.11.32 +Version: 0.11.33 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 1727780afddd0ac9c531610c011d8362b3e75901 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Fri, 31 Jul 2026 16:29:06 +0100 Subject: [PATCH 37/47] Update to 0.12.0 --- sources | 2 +- uv.spec | 14 ++------------ 2 files changed, 3 insertions(+), 13 deletions(-) diff --git a/sources b/sources index 7f2a53e..ee4c492 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.11.33.tar.gz) = eebc671598b627b9c152da0bad7b3a723788d517b919b0be6db7bea15f89188df613ec04e0b5f1ce189d333faaabbda6649c0ef2f031bd6159cb36aac1c409b6 +SHA512 (uv-0.12.0.tar.gz) = 9dfcb42b4d74c9f26dbb4e6b5ed1a424aafd3c4c2920766682f9d0fa5e54f52a6e9c76fd8d78bc10f6bc0054daed7e339bb01cc79d5114fd51cfc67a27186558 diff --git a/uv.spec b/uv.spec index 3cfbb38..289ff7d 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.11.33 +Version: 0.12.0 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See @@ -111,7 +111,6 @@ Summary: An extremely fast Python package installer and resolver, written # Unicode-3.0 # Unlicense OR MIT # Zlib -# bzip2-1.0.6 License: %{shrink: 0BSD AND (0BSD OR Apache-2.0 OR MIT) AND @@ -137,8 +136,7 @@ License: %{shrink: MPL-2.0 AND Unicode-3.0 AND Unicode-DFS-2016 AND - Zlib AND - bzip2-1.0.6 + Zlib } # LICENSE.dependencies contains a full license breakdown URL: https://github.com/astral-sh/uv @@ -426,14 +424,6 @@ tomcli set Cargo.toml append workspace.exclude crates/uv-bench # needed here. It also brings extra dependencies that we would prefer to avoid. tomcli set Cargo.toml append workspace.exclude crates/uv-dev -# Do not request static linking of anything (particularly, liblzma) -tomcli set Cargo.toml lists delitem \ - workspace.dependencies.xz2.features 'static' -tomcli set crates/uv/Cargo.toml lists delitem \ - features.default 'uv-distribution/static' -tomcli set crates/uv-distribution/Cargo.toml del features.static -tomcli set crates/uv-extract/Cargo.toml del features.static - # Disable several default features that control which tests are compiled and # executed, and which are not usable in offline builds: # From 456632b9fe35675b7c02c03dae2588ea16e34df4 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sun, 2 Aug 2026 11:58:22 +0100 Subject: [PATCH 38/47] Update to 0.12.1 (close RHBZ#2509887) --- sources | 2 +- uv-0.12.1-revert-blake2-beta.patch | 11 +++++++++++ uv.spec | 15 ++++++++++++++- 3 files changed, 26 insertions(+), 2 deletions(-) create mode 100644 uv-0.12.1-revert-blake2-beta.patch diff --git a/sources b/sources index ee4c492..8c0e819 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.12.0.tar.gz) = 9dfcb42b4d74c9f26dbb4e6b5ed1a424aafd3c4c2920766682f9d0fa5e54f52a6e9c76fd8d78bc10f6bc0054daed7e339bb01cc79d5114fd51cfc67a27186558 +SHA512 (uv-0.12.1.tar.gz) = 15c84d4b719295c1d9fca178025317d1b808f4c34a572609b78e35382bb12abdc4ba7a3b2bd1bc5576763b655b34b222be15f99c3481419f92a5f74e460ef96f diff --git a/uv-0.12.1-revert-blake2-beta.patch b/uv-0.12.1-revert-blake2-beta.patch new file mode 100644 index 0000000..805ef98 --- /dev/null +++ b/uv-0.12.1-revert-blake2-beta.patch @@ -0,0 +1,11 @@ +diff -Naur uv-0.12.1-original/crates/uv-extract/src/hash.rs uv-0.12.1/crates/uv-extract/src/hash.rs +--- uv-0.12.1-original/crates/uv-extract/src/hash.rs 2026-07-31 20:05:57.000000000 +0100 ++++ uv-0.12.1/crates/uv-extract/src/hash.rs 2026-08-02 11:53:13.406289238 +0100 +@@ -1,4 +1,6 @@ +-use sha2::{Digest, digest::consts::U32}; ++// BLAKE2 still uses the `digest` 0.10 trait, while MD5 and SHA-2 use 0.11. ++use blake2::digest::{Digest as _, consts::U32}; ++use sha2::Digest; + use std::pin::Pin; + use std::task::{Context, Poll}; + use tokio::io::{AsyncReadExt, ReadBuf}; diff --git a/uv.spec b/uv.spec index 289ff7d..3728fdc 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.12.0 +Version: 0.12.1 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See @@ -150,6 +150,10 @@ Source1: uv.toml # Should uv.find_uv_bin() be able to find /usr/bin/uv? # https://github.com/astral-sh/uv/issues/4451 Patch: 0001-Downstream-patch-always-find-the-system-wide-uv-exec.patch +# Downstream-only: revert source-code changes from “Upgrade BLAKE2 to unify +# hashing digest versions”, https://github.com/astral-sh/uv/pull/20834. We do +# not wish to upgrade rust-blake2 to a pre-release. +Patch: uv-0.12.1-revert-blake2-beta.patch # Add license texts for new contents of test/ecosystem/ from PR#20068 # https://github.com/astral-sh/uv/pull/20174 Patch: %{url}/pull/20174.patch @@ -518,6 +522,15 @@ sed --regexp-extended --in-place \ 's/^(tikv-jemallocator\b.*version = ")0\.6\.0"/\1>=0.6.0, <0.8.0"/' \ crates/uv-performance-memory-allocator/Cargo.toml +# blake2 +# wanted: 0.11.0-rc.6 +# currently packaged: 0.10.6 +# https://github.com/astral-sh/uv/pull/19735 +# Downstream-only: revert “Upgrade BLAKE2 to unify hashing digest versions”, +# https://github.com/astral-sh/uv/pull/20834. We do not wish to upgrade +# rust-blake2 to a pre-release. There is an anccompanying source-code patch. +tomcli set Cargo.toml str workspace.dependencies.blake2.version 0.10.6 + %cargo_prep From 20d07c3400d8e15787fbce3dd107c5ae96dec761 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Tue, 4 Aug 2026 23:28:34 +0100 Subject: [PATCH 39/47] Document bundling of rust-netrc crate --- uv.spec | 11 +++++++++++ 1 file changed, 11 insertions(+) diff --git a/uv.spec b/uv.spec index 3728fdc..fd0107f 100644 --- a/uv.spec +++ b/uv.spec @@ -45,6 +45,7 @@ Summary: An extremely fast Python package installer and resolver, written # MIT # - crates/uv-virtualenv/src/activator/ is vendored and forked from # python3dist(virtualenv) +# - crates/uv-netrc/ is vencored from crate(rust-netrc) # # Additionally, the following are bundled/forked but happen to be under the # same (Apache-2.0 OR MIT) terms as uv itself: @@ -271,6 +272,16 @@ Provides: bundled(crate(r-shquote)) = 0.1.1 # appear to be any prospect of unbundling. Provides: bundled(crate(keyring)) = 4.0.0~rc2 +# crates/uv-netrc +# From crates/uv-netrc/README.md, “This crate vendors the rust-netrc parser for +# use by uv. The source was vendored from gribouille/netrc, as published in +# rust-netrc 0.1.2[…]” +# +# Upstream justifies the bundling in +# https://github.com/astral-sh/uv/pull/19409, and the mandatory +# path-to-unbundling query appears in a comment on that PR. +Provides: bundled(crate(rust-netrc)) = 0.1.2 + # The contents of crates/uv-virtualenv/src/activator/ are a bundled and # slightly forked copy of a subset of https://pypi.org/project/virtualenv; see # https://github.com/pypa/virtualenv/tree/main/src/virtualenv/activation. From ee01661ac5a1422fa98a72ffad2575607c135608 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 5 Aug 2026 06:57:56 +0100 Subject: [PATCH 40/47] More spec-file comment improvements --- uv.spec | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) diff --git a/uv.spec b/uv.spec index fd0107f..449df87 100644 --- a/uv.spec +++ b/uv.spec @@ -45,7 +45,7 @@ Summary: An extremely fast Python package installer and resolver, written # MIT # - crates/uv-virtualenv/src/activator/ is vendored and forked from # python3dist(virtualenv) -# - crates/uv-netrc/ is vencored from crate(rust-netrc) +# - crates/uv-netrc/ is vendored from crate(rust-netrc) # # Additionally, the following are bundled/forked but happen to be under the # same (Apache-2.0 OR MIT) terms as uv itself: @@ -278,8 +278,11 @@ Provides: bundled(crate(keyring)) = 4.0.0~rc2 # rust-netrc 0.1.2[…]” # # Upstream justifies the bundling in -# https://github.com/astral-sh/uv/pull/19409, and the mandatory -# path-to-unbundling query appears in a comment on that PR. +# https://github.com/astral-sh/uv/pull/19409: they want unreleased bug fixes, +# including those pertaining to https://github.com/astral-sh/uv/issues/16083, +# and to avoid a dependency on thiserror v1. In response to the mandatory +# query, they report they are open to de-vendoring if a new rust-netrc release +# with the desired changes appears. Provides: bundled(crate(rust-netrc)) = 0.1.2 # The contents of crates/uv-virtualenv/src/activator/ are a bundled and From 3390ffc93bb1ce71e553116628209473861f6f2d Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 5 Aug 2026 07:00:49 +0100 Subject: [PATCH 41/47] Ship the license file for the vendored rust-netrc --- uv.spec | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index 449df87..07bab6a 100644 --- a/uv.spec +++ b/uv.spec @@ -373,7 +373,7 @@ This package provides an importable Python module for uv. %prep %autosetup -p1 -# Collect license files of vendored dependencies in the main source archive +# Collect license files of vendored dependencies install -D --preserve-timestamps --mode=0644 \ --target=LICENSE.bundled/packaging \ crates/uv-python/python/packaging/LICENSE.* @@ -386,6 +386,8 @@ install -D --preserve-timestamps --mode=0644 \ crates/uv-build-frontend/src/pipreqs/LICENSE install -D --preserve-timestamps --mode=0644 \ --target=LICENSE.bundled/ripunzip crates/uv-extract/src/vendor/LICENSE +install -D --preserve-timestamps --mode=0644 \ + --target=LICENSE.bundled/rust-netrc crates/uv-netrc/LICENSE # The original license text from rattler_installs_packages is present in a # comment, but we want it in a separate file so we can ensure it is present in # the binary RPM. From d81d924b8e94e6b214643305945b9a529bf437a5 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Wed, 5 Aug 2026 08:40:26 +0100 Subject: [PATCH 42/47] Skip another test that flakes due to racy env-vars --- uv.spec | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/uv.spec b/uv.spec index 07bab6a..0b91710 100644 --- a/uv.spec +++ b/uv.spec @@ -717,6 +717,13 @@ skip="${skip-} --skip network::retry_read_timeout_python_downloads_json" skip="${skip-} --skip user_agent_version::test_user_agent_has_linehaul" skip="${skip-} --skip user_agent_version::test_user_agent_has_subcommand" skip="${skip-} --skip user_agent_version::test_user_agent_has_version" +# Similarly, with an error like: +# Client::new(): reqwest::Error { +# kind: Builder, +# source: General("No CA certificates were loaded from the system") +# } +# There are probably more of these. +skip="${skip-} --skip retry::tests::retried_status_codes" %cargo_test -- -- --exact ${skip-} %endif From cb3df8bce7ac4d252b9a75005d9f854124a73d1b Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Thu, 6 Aug 2026 07:22:38 +0100 Subject: [PATCH 43/47] Update to 0.12.2 (close RHBZ#2511719) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index 8c0e819..a72ff96 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.12.1.tar.gz) = 15c84d4b719295c1d9fca178025317d1b808f4c34a572609b78e35382bb12abdc4ba7a3b2bd1bc5576763b655b34b222be15f99c3481419f92a5f74e460ef96f +SHA512 (uv-0.12.2.tar.gz) = 4058b81df286d5702278c7a3315dc3df96aae15ae255c4cb71fa293aa9d8519842d58c8d1a00b3c2a6c33443449b0d975bc0122e972a05c9ce023e00ee260575 diff --git a/uv.spec b/uv.spec index 26fd457..8b31116 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.12.1 +Version: 0.12.2 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From ca46850e729f91fdd06684e01451d82807928c7a Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sat, 8 Aug 2026 05:55:28 +0100 Subject: [PATCH 44/47] Update to 0.12.3 (close RHBZ#2512634) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index a72ff96..ce4d7d8 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.12.2.tar.gz) = 4058b81df286d5702278c7a3315dc3df96aae15ae255c4cb71fa293aa9d8519842d58c8d1a00b3c2a6c33443449b0d975bc0122e972a05c9ce023e00ee260575 +SHA512 (uv-0.12.3.tar.gz) = a4933b9b9b852dee2485800ad82ee3be111a4a5a437ab32d5064cfd4004e124ba733294a546a097379c74cf1fc234d1da0488aec7725037c7b967ec1aa862a71 diff --git a/uv.spec b/uv.spec index 8b31116..49a17fc 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.12.2 +Version: 0.12.3 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 6fa06b6a2b895114ee94453da35a237c487ebbe4 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Thu, 6 Aug 2026 07:22:38 +0100 Subject: [PATCH 45/47] Update to 0.12.2 (close RHBZ#2511719) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index 8c0e819..a72ff96 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.12.1.tar.gz) = 15c84d4b719295c1d9fca178025317d1b808f4c34a572609b78e35382bb12abdc4ba7a3b2bd1bc5576763b655b34b222be15f99c3481419f92a5f74e460ef96f +SHA512 (uv-0.12.2.tar.gz) = 4058b81df286d5702278c7a3315dc3df96aae15ae255c4cb71fa293aa9d8519842d58c8d1a00b3c2a6c33443449b0d975bc0122e972a05c9ce023e00ee260575 diff --git a/uv.spec b/uv.spec index 0b91710..d2c9cb0 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.12.1 +Version: 0.12.2 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 6d5b6df28eb13cf86073f5be784aa4dc511f7363 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Sat, 8 Aug 2026 05:55:28 +0100 Subject: [PATCH 46/47] Update to 0.12.3 (close RHBZ#2512634) --- sources | 2 +- uv.spec | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/sources b/sources index a72ff96..ce4d7d8 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (uv-0.12.2.tar.gz) = 4058b81df286d5702278c7a3315dc3df96aae15ae255c4cb71fa293aa9d8519842d58c8d1a00b3c2a6c33443449b0d975bc0122e972a05c9ce023e00ee260575 +SHA512 (uv-0.12.3.tar.gz) = a4933b9b9b852dee2485800ad82ee3be111a4a5a437ab32d5064cfd4004e124ba733294a546a097379c74cf1fc234d1da0488aec7725037c7b967ec1aa862a71 diff --git a/uv.spec b/uv.spec index d2c9cb0..7a4e213 100644 --- a/uv.spec +++ b/uv.spec @@ -5,7 +5,7 @@ %bcond other_python_versions %{undefined epel} Name: uv -Version: 0.12.2 +Version: 0.12.3 # The uv package has a permanent exception to the Updates Policy in Fedora, so # it can be updated in stable releases across SemVer boundaries (subject to # good judgement and actual compatibility of any reverse dependencies). See From 247904f9a8ae91df0730d2e1b950d15f3848d6f4 Mon Sep 17 00:00:00 2001 From: "Benjamin A. Beasley" Date: Mon, 24 Aug 2026 07:33:31 +0100 Subject: [PATCH 47/47] =?UTF-8?q?Don=E2=80=99t=20explicitly=20lower-bound?= =?UTF-8?q?=20cargo-rpm-macros=20version?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit [skip changelog] --- uv.spec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/uv.spec b/uv.spec index 49a17fc..3583aa3 100644 --- a/uv.spec +++ b/uv.spec @@ -192,7 +192,7 @@ ExcludeArch: %{ix86} # “too many open files.” Try to keep the files/core ratio from getting too low. %global _smp_ncpus_max 48 -BuildRequires: cargo-rpm-macros >= 24 +BuildRequires: cargo-rpm-macros BuildRequires: rust2rpm-helper BuildRequires: tomcli %if %{with check} && %{with other_python_versions}