Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package grafana for openSUSE:Factory checked in at 2022-02-10 23:12:23 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/grafana (Old) and /work/SRC/openSUSE:Factory/.grafana.new.1956 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "grafana" Thu Feb 10 23:12:23 2022 rev:26 rq:953108 version:8.3.5 Changes: -------- --- /work/SRC/openSUSE:Factory/grafana/grafana.changes 2022-02-07 23:39:51.485718733 +0100 +++ /work/SRC/openSUSE:Factory/.grafana.new.1956/grafana.changes 2022-02-10 23:13:10.584375511 +0100 @@ -1,0 +2,12 @@ +Wed Feb 09 16:10:40 UTC 2022 - [email protected] + +- Update to version 8.3.5 (jsc#SLE-23439, jsc#SLE-23422) + + Security: + * Fixes XSS vulnerability in handling data sources + (bsc#1195726, CVE-2022-21702) + * Fixes cross-origin request forgery vulnerability + (bsc#1195727, CVE-2022-21703) + * Fixes Insecure Direct Object Reference vulnerability in Teams + API (bsc#1195728, CVE-2022-21713) + +------------------------------------------------------------------- @@ -8 +20 @@ -- Update to version 8.3.4 (jsc#PM-3191) +- Update to version 8.3.4 Old: ---- grafana-8.3.4.tar.gz New: ---- grafana-8.3.5.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ grafana.spec ++++++ --- /var/tmp/diff_new_pack.k352dW/_old 2022-02-10 23:13:11.592378064 +0100 +++ /var/tmp/diff_new_pack.k352dW/_new 2022-02-10 23:13:11.596378074 +0100 @@ -22,7 +22,7 @@ %endif Name: grafana -Version: 8.3.4 +Version: 8.3.5 Release: 0 Summary: The open-source platform for monitoring and observability License: AGPL-3.0-only ++++++ _service ++++++ --- /var/tmp/diff_new_pack.k352dW/_old 2022-02-10 23:13:11.672378266 +0100 +++ /var/tmp/diff_new_pack.k352dW/_new 2022-02-10 23:13:11.676378276 +0100 @@ -5,7 +5,7 @@ <param name="exclude">.git</param> <param name="versionformat">@PARENT_TAG@</param> <param name="versionrewrite-pattern">v(.*)</param> - <param name="revision">v8.3.4</param> + <param name="revision">v8.3.5</param> <param name="changesgenerate">enable</param> </service> <service name="recompress" mode="disabled"> ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.k352dW/_old 2022-02-10 23:13:11.700378337 +0100 +++ /var/tmp/diff_new_pack.k352dW/_new 2022-02-10 23:13:11.700378337 +0100 @@ -1,7 +1,7 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/grafana/grafana</param> - <param name="changesrevision">a551d74b11dd89b512d642da5b620225a5d88cc9</param> + <param name="changesrevision">a53fcac7b1b7ebda8c0cb18f7ce92788af92fa32</param> </service> </servicedata> (No newline at EOF) ++++++ grafana-8.3.4.tar.gz -> grafana-8.3.5.tar.gz ++++++ /work/SRC/openSUSE:Factory/grafana/grafana-8.3.4.tar.gz /work/SRC/openSUSE:Factory/.grafana.new.1956/grafana-8.3.5.tar.gz differ: char 5, line 1 ++++++ vendor.tar.gz ++++++ /work/SRC/openSUSE:Factory/grafana/vendor.tar.gz /work/SRC/openSUSE:Factory/.grafana.new.1956/vendor.tar.gz differ: char 5, line 1
