Hello community,

here is the log from the commit of package perl-Module-Signature for 
openSUSE:Factory checked in at 2016-01-15 10:42:27
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/perl-Module-Signature (Old)
 and      /work/SRC/openSUSE:Factory/.perl-Module-Signature.new (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "perl-Module-Signature"

Changes:
--------
--- 
/work/SRC/openSUSE:Factory/perl-Module-Signature/perl-Module-Signature.changes  
    2015-05-19 23:49:40.000000000 +0200
+++ 
/work/SRC/openSUSE:Factory/.perl-Module-Signature.new/perl-Module-Signature.changes
 2016-01-15 10:42:29.000000000 +0100
@@ -1,0 +2,6 @@
+Fri Jan  8 21:29:31 UTC 2016 - [email protected]
+
+- update changelog
+  * add missing CVE tags for 0.78 changes (boo#928382)
+
+-------------------------------------------------------------------
@@ -46 +52 @@
-  * More protection of @INC from relative paths.
+  * More protection of @INC from relative paths. (CVE-2015-3409)
@@ -54 +60 @@
-  * Fix GPG signature parsing logic.
+  * Fix GPG signature parsing logic. (CVE-2015-3406)
@@ -56 +62 @@
-  * MANIFEST.SKIP is no longer consulted unless --skip is given.
+  * MANIFEST.SKIP is no longer consulted unless --skip is given. 
(CVE-2015-3407)
@@ -58 +64 @@
-  * Properly use open() modes to avoid injection attacks.
+  * Properly use open() modes to avoid injection attacks. (CVE-2015-3408)

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ perl-Module-Signature.spec ++++++
--- /var/tmp/diff_new_pack.Sfg6EW/_old  2016-01-15 10:42:30.000000000 +0100
+++ /var/tmp/diff_new_pack.Sfg6EW/_new  2016-01-15 10:42:30.000000000 +0100
@@ -1,7 +1,7 @@
 #
 # spec file for package perl-Module-Signature
 #
-# Copyright (c) 2015 SUSE LINUX GmbH, Nuernberg, Germany.
+# Copyright (c) 2016 SUSE LINUX GmbH, Nuernberg, Germany.
 #
 # All modifications and additions to the file contributed by third parties
 # remain the property of their copyright owners, unless otherwise agreed


Reply via email to