Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package openbao for openSUSE:Factory checked in at 2026-06-18 18:42:37 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/openbao (Old) and /work/SRC/openSUSE:Factory/.openbao.new.1981 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "openbao" Thu Jun 18 18:42:37 2026 rev:21 rq:1360202 version:2.5.5 Changes: -------- --- /work/SRC/openSUSE:Factory/openbao/openbao.changes 2026-05-21 18:32:19.358854679 +0200 +++ /work/SRC/openSUSE:Factory/.openbao.new.1981/openbao.changes 2026-06-18 18:44:32.042829535 +0200 @@ -1,0 +2,34 @@ +Thu Jun 18 07:32:34 UTC 2026 - Johannes Kastl <[email protected]> + +- Update to version 2.5.5: + * SECURITY + - auth/ldap: Prevent unlikely post-bind LDAP injection via bind + DN to group resolution. GHSA-6mwx-4547-5vc9. [GH-3306] + - secrets/ldap: Prevent potential LDAP injection with + unsanitized DNs for service accounts. GHSA-6mwx-4547-5vc9. + [GH-3306] + - secrets/transit: Prevent server crash due to unlock of + unlocked mutex for RSA keys created with derived=true. + GHSA-8w8f-r2xv-4q4j. [GH-3309] + - core/leases: Fix unauthorized cross-namespace lease + revocation via leaked lease identifiers. GHSA-c36x-h252-g9x2. + [GH-3307] + - core/namespaces: Fix namespace path canonicalization of + "root" enabling unauthorized operations on the parent + namespace. GHSA-mwr2-wmgp-crj6. [GH-3308] + * BUG FIXES + - core/ha: Return to read-enabled standby mode instead of + read-disabled standby mode after stepping down from active + mode when standby reads are enabled. This also fixes SIGHUPs + crashing standby nodes if they've previously stepped down + from active. [GH-3223] + - auth/mfa: Correctly forward two-phase MFA validations on + standby nodes. [GH-3246] + - sys/namespaces: Support clearing a namespace's + custom_metadata by providing a patch that sets + custom_metadata to null at the top-level. [GH-3273] + - sys/plugins: Fix /sys/plugins/catalog and + /sys/plugins/catalog/<type> not returning versioned plugins. + [GH-3186] + +------------------------------------------------------------------- Old: ---- openbao-2.5.4.obscpio ui-2.5.4.tar.gz New: ---- openbao-2.5.5.obscpio ui-2.5.5.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ openbao.spec ++++++ --- /var/tmp/diff_new_pack.MdHa6s/_old 2026-06-18 18:44:43.687316093 +0200 +++ /var/tmp/diff_new_pack.MdHa6s/_new 2026-06-18 18:44:43.691316259 +0200 @@ -23,7 +23,7 @@ %define short_executable_name bao Name: openbao -Version: 2.5.4 +Version: 2.5.5 Release: 0 Summary: Manage, store, and distribute sensitive data License: MPL-2.0 ++++++ _service ++++++ --- /var/tmp/diff_new_pack.MdHa6s/_old 2026-06-18 18:44:43.771319603 +0200 +++ /var/tmp/diff_new_pack.MdHa6s/_new 2026-06-18 18:44:43.783320104 +0200 @@ -2,7 +2,7 @@ <service name="obs_scm" mode="manual"> <param name="url">https://github.com/openbao/openbao</param> <param name="scm">git</param> - <param name="revision">v2.5.4</param> + <param name="revision">v2.5.5</param> <param name="package-meta">yes</param> <param name="versionformat">@PARENT_TAG@</param> <param name="versionrewrite-pattern">v(.*)</param> ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.MdHa6s/_old 2026-06-18 18:44:43.811321274 +0200 +++ /var/tmp/diff_new_pack.MdHa6s/_new 2026-06-18 18:44:43.815321441 +0200 @@ -1,6 +1,6 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/openbao/openbao</param> - <param name="changesrevision">4f6d47246a053375271a5fd8af85c3b75695aa46</param></service></servicedata> + <param name="changesrevision">028992583c693c4de6350b8aa52ff85e30375a99</param></service></servicedata> (No newline at EOF) ++++++ openbao-2.5.4.obscpio -> openbao-2.5.5.obscpio ++++++ /work/SRC/openSUSE:Factory/openbao/openbao-2.5.4.obscpio /work/SRC/openSUSE:Factory/.openbao.new.1981/openbao-2.5.5.obscpio differ: char 49, line 1 ++++++ openbao.obsinfo ++++++ --- /var/tmp/diff_new_pack.MdHa6s/_old 2026-06-18 18:44:43.907325286 +0200 +++ /var/tmp/diff_new_pack.MdHa6s/_new 2026-06-18 18:44:43.915325620 +0200 @@ -1,5 +1,5 @@ name: openbao -version: 2.5.4 -mtime: 1779292428 -commit: 4f6d47246a053375271a5fd8af85c3b75695aa46 +version: 2.5.5 +mtime: 1781694211 +commit: 028992583c693c4de6350b8aa52ff85e30375a99 ++++++ ui-2.5.4.tar.gz -> ui-2.5.5.tar.gz ++++++ /work/SRC/openSUSE:Factory/openbao/ui-2.5.4.tar.gz /work/SRC/openSUSE:Factory/.openbao.new.1981/ui-2.5.5.tar.gz differ: char 13, line 1 ++++++ vendor.tar.gz ++++++ /work/SRC/openSUSE:Factory/openbao/vendor.tar.gz /work/SRC/openSUSE:Factory/.openbao.new.1981/vendor.tar.gz differ: char 15, line 1
