Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package 389-ds for openSUSE:Factory checked in at 2026-05-28 17:23:44 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/389-ds (Old) and /work/SRC/openSUSE:Factory/.389-ds.new.1937 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "389-ds" Thu May 28 17:23:44 2026 rev:91 rq:1355258 version:3.1.4+e9d94d45a Changes: -------- --- /work/SRC/openSUSE:Factory/389-ds/389-ds.changes 2026-04-08 17:13:38.046749688 +0200 +++ /work/SRC/openSUSE:Factory/.389-ds.new.1937/389-ds.changes 2026-05-28 17:24:07.228718475 +0200 @@ -1,0 +2,66 @@ +Wed May 27 02:50:27 UTC 2026 - [email protected] + +- bsc#1265898 - CVE-2026-9064 - unbounded LDAP controls parsing can lead to DOS +- Update to version 3.1.4+e9d94d45a: + * Issue 7496 - Fix latest GCC compiler warnings + * Issue 7503 - CVE-2026-9064 - Add a limit to the number controls per operation + * Issue 7300 - RFE - Add OS-level thread names to all server threads (#7301) + * Issue 7460 - MOD_REPLACE on groups/link attributes modifies overlap targets (#7461) + * Issue 7307 - RFE - Expose work queue and worker utilization metrics (#7308) + * Issue 7464 - CLI - allow dsidm to work with other user types + * Issue 7457 - Refactor memberOf perf test (#7458) + * Issue 7431 - password policy - passwordBadWords is ignored in local policies + * Issue 7155 - build_candidate_list - Database error 11 with range search (#7156) + * Issue 7426 - logconv.py is out of sync with server-emitted note codes (#7427) + * Issue 7417 - UI - global password policy syntax settings missing passwordMaxRepeats + * Issue 3555 - UI - Fix audit issue with npm - brace-expansion (#7411) + * Issue 7088 - Change log level for "Can't locate CSN" error message + * Issue 7423 - cleanup pblock after freeing pre/post entries + * Issue 7418 - Use-after-free in deferred memberof (#7419) + * Issue 7407 - dbscan -k option display entries that do not match the specified key + * Issue 7404 - fix latest compiler warnings(cherry-pick issue) + * Issue 7404 - fix latest compiler warnings + * Issue 7394 - UI - Manual typing of ports can leave out digits (#7395) + * Issue 7277 - UI - Fix Japanese translation errors errors in Cockpit UI (#7386) + * Issue 7246 - correct formatting of 'Gen as CSN' in dsctl get-nsstate output (#7247) + * Issue 7126 - WARN - keys2idl - received NULL idl from index_read_ext_allids (#7127) + * Issue 7370 - Runtime LSan/TSan injection for pytest (#7371) + * Issue 7378 - Make sure suffix entry always gets assigned ID 1 + * Issue 7380 - Internal op with negative wtime and large optime (#7381) + * Issue 7362 - UI - Some FormSelect onChange parameters are reversed + * Issue 7368 - UI - global password policy page is missing passwordmintokenlength + * Issue 7366 - Memory leaks in syncrepl plugin during persistent search operations (#7367) + * Issue 3658 - UI/CLI - show progress of db tasks + * Issue 7284 - CI - Fix test_grace_limit_section after pwpolicy validation fix (#7357) + * Issue 7271 - Add test for retrocl trimming shutdown crash (#7356) + * Issue 3555 - UI - Fix audit issue with npm - flatted, picomatch (#7364) + * Issue 7337 - UI - refactor all error handling to use getApiErrorMessge + * Issue 1704 - DNA plugin creates invalid shared config entry with port 0 (#7352) + * Issue 7348 - CI - Fix failing dsconf security CLI add cert test (#7349) + * Issue 7346 - DS does not handle escape char in bind user (#7347) + * Issue 7322 - Reject adding a replication agreement that points to itself + * Issue 7312 - UI - Database Maximum Size cannot be easily set by typing (#7313) + * Issue 7342 - CI - repl config regression (#7343) + * Issue 7339 - Return the exact DN during export + * Issue - UI - Improve suffix import LDIF table + * Issue 7325 - UI - new error parser missing import + * Issue 7325 - UI - create an error parser for cockpit spawn errors + * Issue 7319 - Action menu for certificates remains in empty certificate list (#7320) + * Issue 7265 - CI - fix retro changelog maxage validation test + * Issue 7093 - A password policy can be created even when an identical policy already exists (#7283) + * Issue 7316 - UI - update npm module immutable + * Issue 7233 - test_produce_division_by_zero fails with IsADirectoryError in conftest.py (#7234) + * Issue 7314 - UI - Add progress steppers to Security, Database, and Replication tabs + * Issuei 7281 - UI - Add encryption module management + * Issue 7271 - Add new plugin pre-close function check to plugin_invoke_plugin_pb + * Issue 7304 - retrocl should not cache DN + * Issue 7265 - Add dse modify callback to validate retrocl trimming settings + * Issue 7152 - ns-slapd fails to shutdown when deferred memberof update is in progress (#7187) + * Issue 3555 - UI - Fix audit issue with npm - ajv, minimatch (#7298) + * Issue 7291 - Crash when configuring a replica with an incorrect nsds5ReplicaRoot (#7292) + * Issue 7271 - implement a pre-close plugin function + * Issue 7281 - RFE - CLI - add support to managing additional encryption modules + * Issue 7265 - changelog maxage validation is not strict enough + * Issue 7284 - Creating local password policy succeeds with incorrect passwordInHistory value (#7285) + +------------------------------------------------------------------- Old: ---- 389-ds-base-3.1.4+e2562f589.tar.zst New: ---- 389-ds-base-3.1.4+e9d94d45a.tar.zst ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ 389-ds.spec ++++++ --- /var/tmp/diff_new_pack.9idDT7/_old 2026-05-28 17:24:09.720821631 +0200 +++ /var/tmp/diff_new_pack.9idDT7/_new 2026-05-28 17:24:09.720821631 +0200 @@ -1,8 +1,7 @@ # # spec file for package 389-ds # -# Copyright (c) 2026 SUSE LLC -# Copyright (c) 2025 SUSE LLC and contributors +# Copyright (c) 2026 SUSE LLC and contributors # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -32,7 +31,7 @@ %define svrcorelib libsvrcore0 Name: 389-ds -Version: 3.1.4+e2562f589 +Version: 3.1.4+e9d94d45a Release: 0 Summary: 389 Directory Server License: GPL-3.0-or-later AND MPL-2.0 ++++++ 389-ds-base-3.1.4+e2562f589.tar.zst -> 389-ds-base-3.1.4+e9d94d45a.tar.zst ++++++ ++++ 37321 lines of diff (skipped) ++++++ 389-ds-base.obsinfo ++++++ --- /var/tmp/diff_new_pack.9idDT7/_old 2026-05-28 17:24:11.900911872 +0200 +++ /var/tmp/diff_new_pack.9idDT7/_new 2026-05-28 17:24:11.908912203 +0200 @@ -1,5 +1,5 @@ name: 389-ds-base -version: 3.1.4+e2562f589 -mtime: 1772078226 -commit: e2562f5894dd05a3b062e7820f471f2f8e12b85d +version: 3.1.4+e9d94d45a +mtime: 1779390748 +commit: e9d94d45a3990abc0e83db29ed464f1a583a3f4e ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.9idDT7/_old 2026-05-28 17:24:12.040917667 +0200 +++ /var/tmp/diff_new_pack.9idDT7/_new 2026-05-28 17:24:12.044917833 +0200 @@ -1,6 +1,6 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/389ds/389-ds-base.git</param> - <param name="changesrevision">e2562f5894dd05a3b062e7820f471f2f8e12b85d</param></service></servicedata> + <param name="changesrevision">e9d94d45a3990abc0e83db29ed464f1a583a3f4e</param></service></servicedata> (No newline at EOF) ++++++ vendor.tar.zst ++++++ /work/SRC/openSUSE:Factory/389-ds/vendor.tar.zst /work/SRC/openSUSE:Factory/.389-ds.new.1937/vendor.tar.zst differ: char 7, line 1
