Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package python-pip for openSUSE:Factory checked in at 2026-06-02 16:01:06 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/python-pip (Old) and /work/SRC/openSUSE:Factory/.python-pip.new.1937 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python-pip" Tue Jun 2 16:01:06 2026 rev:75 rq:1356352 version:26.1.2 Changes: -------- --- /work/SRC/openSUSE:Factory/python-pip/python-pip.changes 2026-05-29 18:04:17.731380035 +0200 +++ /work/SRC/openSUSE:Factory/.python-pip.new.1937/python-pip.changes 2026-06-02 16:01:33.156045340 +0200 @@ -1,0 +2,11 @@ +Mon Jun 1 12:18:51 UTC 2026 - Daniel Garcia <[email protected]> + +- Update to 26.1.2 (bsc#1266669, CVE-2026-8643): + - Reject console_scripts and gui_scripts entry points whose name + would install a script outside the scripts directory. (#14000) + - Fix installation incorrectly failing when the target path contains + a doubled slash, such as with pip install --root //.... (#14001) + - Send a consistent Accept-Encoding header to avoid a spurious Cache + entry deserialization failed warning. (#14012) + +------------------------------------------------------------------- Old: ---- pip-26.1.1-gh.tar.gz New: ---- pip-26.1.2-gh.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ python-pip.spec ++++++ --- /var/tmp/diff_new_pack.WDvJ9o/_old 2026-06-02 16:01:34.444098768 +0200 +++ /var/tmp/diff_new_pack.WDvJ9o/_new 2026-06-02 16:01:34.448098934 +0200 @@ -34,7 +34,7 @@ %{?pythons_for_pypi} %{?sle15_python_module_pythons} Name: python-pip%{psuffix} -Version: 26.1.1 +Version: 26.1.2 Release: 0 Summary: A Python package management system License: MIT ++++++ pip-26.1.1-gh.tar.gz -> pip-26.1.2-gh.tar.gz ++++++ /work/SRC/openSUSE:Factory/python-pip/pip-26.1.1-gh.tar.gz /work/SRC/openSUSE:Factory/.python-pip.new.1937/pip-26.1.2-gh.tar.gz differ: char 72, line 1
