Script 'mail_helper' called by obssrc
Hello community,
here is the log from the commit of package python-virtualenv for
openSUSE:Factory checked in at 2024-10-25 19:18:57
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/python-virtualenv (Old)
and /work/SRC/openSUSE:Factory/.python-virtualenv.new.2020 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python-virtualenv"
Fri Oct 25 19:18:57 2024 rev:69 rq:1218086 version:20.26.6
Changes:
--------
--- /work/SRC/openSUSE:Factory/python-virtualenv/python-virtualenv.changes
2024-10-16 23:36:12.394590400 +0200
+++
/work/SRC/openSUSE:Factory/.python-virtualenv.new.2020/python-virtualenv.changes
2024-10-25 19:19:29.534249920 +0200
@@ -1,0 +2,12 @@
+Thu Oct 17 15:15:49 UTC 2024 - Dirk Müller <[email protected]>
+
+- update to 20.26.6:
+ * Properly quote string placeholders in activation script
+ templates to mitigate potential command injection - by
+ @y5c4l3. (#2768, in the Python stdlib known as bsc#1232241,
+ CVE-2024-9287)
+ * Upgrade embedded wheels: setuptools to 75.1.0 from 74.1.2
+ * no longer create () output in console during activation of a
+ virtualenv by .bat file. (#2728)
+
+-------------------------------------------------------------------
Old:
----
virtualenv-20.26.3.tar.gz
New:
----
virtualenv-20.26.6.tar.gz
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Other differences:
------------------
++++++ python-virtualenv.spec ++++++
--- /var/tmp/diff_new_pack.5ES3LP/_old 2024-10-25 19:19:31.142317013 +0200
+++ /var/tmp/diff_new_pack.5ES3LP/_new 2024-10-25 19:19:31.142317013 +0200
@@ -27,7 +27,7 @@
%{?sle15_python_module_pythons}
Name: python-virtualenv%{psuffix}
-Version: 20.26.3
+Version: 20.26.6
Release: 0
Summary: Virtual Python Environment builder
License: MIT
++++++ virtualenv-20.26.3.tar.gz -> virtualenv-20.26.6.tar.gz ++++++
/work/SRC/openSUSE:Factory/python-virtualenv/virtualenv-20.26.3.tar.gz
/work/SRC/openSUSE:Factory/.python-virtualenv.new.2020/virtualenv-20.26.6.tar.gz
differ: char 19, line 1