Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package polkit for openSUSE:Factory checked in at 2026-03-29 20:00:43 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/polkit (Old) and /work/SRC/openSUSE:Factory/.polkit.new.8177 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "polkit" Sun Mar 29 20:00:43 2026 rev:100 rq:1343482 version:127 Changes: -------- --- /work/SRC/openSUSE:Factory/polkit/polkit.changes 2026-03-28 20:12:36.899600148 +0100 +++ /work/SRC/openSUSE:Factory/.polkit.new.8177/polkit.changes 2026-03-29 20:00:53.757935514 +0200 @@ -2,6 +1,0 @@ -Fri Mar 27 14:19:04 UTC 2026 - Marcus Meissner <[email protected]> - -- avoid reading endless amounts of memory (CVE-2026-4897 bsc#1260859) - polkit-fix-oom-cookie-read.patch - -------------------------------------------------------------------- @@ -25,2 +18,0 @@ -- CVE-2025-7519: Fixed that a XML policy file with a large number of - nested elements may lead to crash (bsc#1246472) @@ -31 +22,0 @@ -- removed 0001-Nested-.policy-files-cause-xml-parsing-overflow-lead.patch: upstream Old: ---- polkit-fix-oom-cookie-read.patch ----------(Old B)---------- Old: WARN: polkit-fix-oom-cookie-read.patch not found in changes ----------(Old E)---------- ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ polkit.spec ++++++ --- /var/tmp/diff_new_pack.lz3UyH/_old 2026-03-29 20:00:54.237955290 +0200 +++ /var/tmp/diff_new_pack.lz3UyH/_new 2026-03-29 20:00:54.241955455 +0200 @@ -48,9 +48,6 @@ # PATCH-FIX-OPENSUSE polkit-adjust-libexec-path.patch -- Adjust path to polkit-agent-helper-1 (bsc#1180474) Patch4: polkit-adjust-libexec-path.patch -# PATCH-FIX-OPENSUSE polkit-fix-oom-cookie-read.patch -- bsc#1260859 ... use a limited getline buffer to avoid endless reads -Patch5: polkit-fix-oom-cookie-read.patch - BuildRequires: gcc-c++ BuildRequires: gettext-devel BuildRequires: gtk-doc
