Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package s2n for openSUSE:Factory checked in at 2025-03-17 22:18:16 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/s2n (Old) and /work/SRC/openSUSE:Factory/.s2n.new.19136 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "s2n" Mon Mar 17 22:18:16 2025 rev:19 rq:1253628 version:1.5.14 Changes: -------- --- /work/SRC/openSUSE:Factory/s2n/s2n.changes 2025-02-06 22:06:30.584798018 +0100 +++ /work/SRC/openSUSE:Factory/.s2n.new.19136/s2n.changes 2025-03-17 22:22:02.901645119 +0100 @@ -1,0 +2,82 @@ +Fri Mar 14 09:44:47 UTC 2025 - John Paul Adrian Glaubitz <adrian.glaub...@suse.com> + +- Update to version 1.5.14 + * tests: try to make s2n_mem_usage_test more useful (#5139) + * chore: git-blame-ignore ruff formatting (#5151) + * chore(bindings): change in rustup behavior (#5160) + * refactor: remove unused prf hmac impls (#5148) + * chore(ci): make the awslc fips install script version aware (#5100) + * fix: memory leak during STEK rotation (#5146) + * refactor: add alternative EVP signing method (#5141) + * refactor: cleanup prf header (#5144) + * feat(bindings): expose context on cert chain (#5132) + * Ruff Formatting and add to CI (#5138) + * chore(nix): Add aws-lc-fips 2022/4 (#5109) + * test(integv2): fixes to allow test_record_padding to partially run (#5099) + * build(deps): update rtshark requirement from 2.9.0 to 3.1.0 in /tests/pcap + in the all-cargo-updates group across 1 directory (#5087) + * tests: use sig schemes as source of truth for valid hash+sig algs (#5129) +- from version 1.5.13 + * ci: always set values for command line defines (#5126) + * fix: update callback return value (#5136) + * refactor: always use EVP hashing (#5121) + * ci: add check for third-party-src in disable rand override buildspec (#5137) + * feat: add async cert validation support (#5110) + * chore: remove unused well-known-endpoints.py (#5127) + * fix(bindings): remove mutation behind Arc (#5124) + * chore: binding release 0.3.12 (#5128) + * refactor: use EVP_MD_fetch() if available (#5116) + * feat: Option to disable RAND engine override (#5108) + * fix(bindings): make Context borrow immutable (#5071) + * build(deps): update rand requirement (#5125) + * chore: fix a typo in API comments (#5123) + * bindings: unpin openssl crate from a specific patch version (#5120) + * refactor: move "s2n_libcrypto_is" methods into s2n_libcrypto.h (#5117) + * Add new security policy (20250211) (#5111) + * Revert "refactor: remove unused evp support for md5+sha1 (#5106)" (#5118) + * ci: add default provider to openssl-3.0-fips (#5114) + * fix: don't enable custom random for openssl fips (#5093) + * fix: allow b64 decoding using libcrypto for sidechannel resistance (#5103) + * refactor: remove unused evp support for md5+sha1 (#5106) + * refactor: remove s2n_hmac_is_available (#5104) + * build(deps): bump aws-actions/configure-aws-credentials from 4.0.2 to 4.1.0 + in /.github/workflows in the all-gha-updates group across 1 directory (#5107) + * fix(integrationv2): Skip unsupported client auth tests (#5096) + * chore: bindings release 0.3.11 (#5098) + * chore: ktls buildspec (#5083) + * Fixed formatting for debugging statements (#5094) + * feat(bindings): add external psk apis (#5061) + * test: add minimal openssl-3.0-fips test (#5081) +- from version 1.5.12 + * fix(ci): Allow validate_start_codebuild to run on pushes to main (#5080) + * fix: don't use DEPENDS with add_custom_command(TARGET) (#5074) + * fix: error for uninit psk, check for all-zero psk (#5084) + * fix: calculation of session ticket age (#5001) + * fix: add support for `S2N_INTERN_LIBCRYPTO` with FetchContent (#5076) + * fix(integration): Update PQ integration test expectations (#5082) + * ci: fix dependabot, commit & check Cargo.toml (#5065) + * docs(s2n-tls-hyper): Add hyper client/server example (#5069) + * docs(integv2): add architecture diagram (#5072) + * fix(bindings): prevent temp connection free after panic (#5067) + * ci: Emit benchmark metrics from scheduled runs (#5064) + * ci: change rust-toolchain format to toml (#5070) + * Revert "ci: remove openssl-1.0.2-fips builds (#4995)" (#5060) + * feat(bench): impl into for base config type (#5056) + * refactor: cleanup CBMC proofs after #5048 (#5058) + * ci: Adding integ tests back to integv2 (#5054) + * refactor: remove openssl-1.0.2-fips 'allow md5' logic (#5048) + * ci: pin duvet version (#5057) + * build(deps): bump cross-platform-actions/action from 0.26.0 to 0.27.0 + in /.github/workflows in the all-gha-updates group (#5053) + * chore: fix typos (#5052) + * chore: bump osx Openssl to latest (#5041) + * chore: bindings release for 0.3.10 (#5046) + * fix: initial config should not influence sslv2 (#4987) + * ci: add openssl-3.0-fips builds (#5037) + * Add Security Policy Deprecation API (#5034) + * docs: add C / s2n-tls-sys doc references to s2n-tls docs (#5012) + * test: add sslv2 client hello test w/ jvm (#5019) + * ci: add timeout for cbmc proof (#5038) + * fix(bindings): Specify correct minimum versions (#5028) + +------------------------------------------------------------------- Old: ---- v1.5.11.tar.gz New: ---- v1.5.14.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ s2n.spec ++++++ --- /var/tmp/diff_new_pack.PItHIk/_old 2025-03-17 22:22:03.485669514 +0100 +++ /var/tmp/diff_new_pack.PItHIk/_new 2025-03-17 22:22:03.489669680 +0100 @@ -19,7 +19,7 @@ %define library_version 1.0.0 %define library_soversion 0unstable Name: s2n -Version: 1.5.11 +Version: 1.5.14 Release: 0 Summary: AWS implementation of the TLS/SSL protocols License: Apache-2.0 ++++++ v1.5.11.tar.gz -> v1.5.14.tar.gz ++++++ ++++ 21496 lines of diff (skipped)