Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package iperf for openSUSE:Factory checked in at 2025-01-27 21:33:49 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/iperf (Old) and /work/SRC/openSUSE:Factory/.iperf.new.2316 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "iperf" Mon Jan 27 21:33:49 2025 rev:40 rq:1240619 version:3.18 Changes: -------- --- /work/SRC/openSUSE:Factory/iperf/iperf.changes 2024-11-17 16:42:26.062312094 +0100 +++ /work/SRC/openSUSE:Factory/.iperf.new.2316/iperf.changes 2025-01-27 21:33:52.046126568 +0100 @@ -1,0 +2,33 @@ +Mon Jan 27 17:55:30 UTC 2025 - Dirk Müller <[email protected]> + +- update to 3.18 (bsc#1234705, CVE-2024-53580): + * SECURITY NOTE: Thanks to Leonid Krolle Bi.Zone for + discovering a JSON type security vulnerability that caused a + segmentation fault in the server. (CVE-2024-53580) + This has now been fixed. (PR#1810) + * UDP packets per second now reports the correct number of + packets, by reporting NET_SOFTERROR if there's a EAGAIN/EINTR + errno if no data was sent (#1367/PR#1379). + * Several segmentation faults related to threading were fixed. + One where `pthread_cancel` was called on an improperly + initialized thread (#1801), another where threads were being + recycled (#1760/PR#1761), and another where threads were + improperly handling signals (#1750/PR#1752). + * A segmentation fault from calling `freeaddrinfo` with `NULL` + was fixed (PR#1755). + * Some JSON options were fixed, including checking the size for + `json_read` (PR#1709), but the size limit was removed for + received server output (PR#1779). + * A rcv-timeout error has been fixed. The Nread timeout was + hardcoded and timed out before the `--rcv-timeout` option + * There is no longer a limit on the omit time period + * Fixed an output crash under 32-bit big-endian systems + * An issue was fixed where CPU utilization was unexpectedly + high during limited baud rate tests. The `--pacing-timer` + option was removed, but it is still available in the library + * Add SCTP information to `--json` output and fixed compile + error when SCTP is not supported (#1731). + * `--fq-rate` was changed from a uint to a uint64 to allow + pacing above 32G. Not yet tested on big-endian systems + +------------------------------------------------------------------- Old: ---- iperf-3.17.1.tar.gz iperf-3.17.1.tar.gz.sha256 New: ---- iperf-3.18.tar.gz iperf-3.18.tar.gz.sha256 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ iperf.spec ++++++ --- /var/tmp/diff_new_pack.ipRGc6/_old 2025-01-27 21:33:53.118170768 +0100 +++ /var/tmp/diff_new_pack.ipRGc6/_new 2025-01-27 21:33:53.118170768 +0100 @@ -1,7 +1,7 @@ # # spec file for package iperf # -# Copyright (c) 2024 SUSE LLC +# Copyright (c) 2025 SUSE LLC # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -18,14 +18,14 @@ %define soname 0 Name: iperf -Version: 3.17.1 +Version: 3.18 Release: 0 Summary: A tool to measure network performance License: BSD-3-Clause Group: Productivity/Networking/Diagnostic -URL: https://software.es.net/iperf/ -Source: https://downloads.es.net/pub/iperf/iperf-%{version}.tar.gz -Source1: https://downloads.es.net/pub/iperf/iperf-%{version}.tar.gz.sha256 +URL: https://github.com/esnet/iperf +Source: https://github.com/esnet/iperf/releases/download/%{version}/iperf-%{version}.tar.gz +Source1: https://github.com/esnet/iperf/releases/download/%{version}/iperf-%{version}.tar.gz.sha256 Requires: lib%{name}%{soname} = %{version}-%{release} %if %{?sles_version} && %{?sles_version} <= 11 BuildRequires: libuuid-devel ++++++ iperf-3.17.1.tar.gz -> iperf-3.18.tar.gz ++++++ ++++ 10009 lines of diff (skipped) ++++++ iperf-3.17.1.tar.gz.sha256 -> iperf-3.18.tar.gz.sha256 ++++++ --- /work/SRC/openSUSE:Factory/iperf/iperf-3.17.1.tar.gz.sha256 2024-05-15 21:29:17.171432759 +0200 +++ /work/SRC/openSUSE:Factory/.iperf.new.2316/iperf-3.18.tar.gz.sha256 2025-01-27 21:33:51.794116178 +0100 @@ -1 +1 @@ -84404ca8431b595e86c473d8f23d8bb102810001f15feaf610effd3b318788aa iperf-3.17.1.tar.gz +c0618175514331e766522500e20c94bfb293b4424eb27d7207fb427b88d20bab iperf-3.18.tar.gz
