Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package budgie-extras for openSUSE:Factory checked in at 2023-12-14 22:03:52 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/budgie-extras (Old) and /work/SRC/openSUSE:Factory/.budgie-extras.new.25432 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "budgie-extras" Thu Dec 14 22:03:52 2023 rev:8 rq:1133097 version:1.7.1 Changes: -------- --- /work/SRC/openSUSE:Factory/budgie-extras/budgie-extras.changes 2023-11-26 19:37:49.435308329 +0100 +++ /work/SRC/openSUSE:Factory/.budgie-extras.new.25432/budgie-extras.changes 2023-12-14 22:03:55.989782624 +0100 @@ -1,0 +2,18 @@ +Thu Dec 14 12:58:56 UTC 2023 - Callum Farmer <[email protected]> + +- Budgie Extras 1.7.1 "Tinker Tailor..." + * CVE-2023-49347: budgie-wpreviews: use of fixed paths in /tmp + (bsc#1213341) + * CVE-2023-49344: windowshufflerdaemon: uses various fixed /tmp + file paths (bsc#1213342) + * CVE-2023-49345: budgie-takeabreak: fixed /tmp path use in + /tmp/nextbreak_<user> (bsc#1216281) + * CVE-2023-49346: budgie-weathershow: use of fixed path in + /tmp/<username>_weatherdata (bsc#1216282) + * CVE-2023-49342: budgie-clockworks: uses fixed temporary files + in /tmp/<user>_clockworks (bsc#1217595) + * CVE-2023-49343: budgie-dropby: use of fixed paths in + /tmp/<user>_call_dropby and /tmp/<user>_dropby_icon_copy + (bsc#1217597) + +------------------------------------------------------------------- Old: ---- budgie-extras-1.7.0.tar.xz budgie-extras-1.7.0.tar.xz.asc New: ---- budgie-extras-1.7.1.tar.xz budgie-extras-1.7.1.tar.xz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ budgie-extras.spec ++++++ --- /var/tmp/diff_new_pack.isllt3/_old 2023-12-14 22:03:56.781811191 +0100 +++ /var/tmp/diff_new_pack.isllt3/_new 2023-12-14 22:03:56.781811191 +0100 @@ -24,7 +24,7 @@ %define _distconfdir %{_sysconfdir} %endif Name: budgie-extras -Version: 1.7.0 +Version: 1.7.1 Release: 0 Summary: Additional Budgie Desktop enhancements for user experience License: GPL-3.0-or-later ++++++ budgie-extras-1.7.0.tar.xz -> budgie-extras-1.7.1.tar.xz ++++++ /work/SRC/openSUSE:Factory/budgie-extras/budgie-extras-1.7.0.tar.xz /work/SRC/openSUSE:Factory/.budgie-extras.new.25432/budgie-extras-1.7.1.tar.xz differ: char 27, line 1
