Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package glab for openSUSE:Factory checked in at 2026-08-26 19:57:05 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/glab (Old) and /work/SRC/openSUSE:Factory/.glab.new.1258 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "glab" Wed Aug 26 19:57:05 2026 rev:94 rq:1373825 version:1.115.0 Changes: -------- --- /work/SRC/openSUSE:Factory/glab/glab.changes 2026-08-19 17:57:32.055305007 +0200 +++ /work/SRC/openSUSE:Factory/.glab.new.1258/glab.changes 2026-08-26 19:57:19.283365824 +0200 @@ -1,0 +2,39 @@ +Wed Aug 26 04:26:43 UTC 2026 - Pavel Dostál <[email protected]> + +- Update to version 1.115.0: + * fix(config): give each keyring probe its own sentinel + * feat(config): serialize credential writes across processes + * chore(deps): update module github.com/mattn/go-runewidth to v0.0.28 + * chore: update technical writing with correct group + * fix(auth): check credentials can be saved before refreshing OAuth token + * feat(orbit): route glab orbit through the orbit-cli binary + * chore(deps): update module github.com/stretchr/testify to v1.12.1 + * fix(ci): show the correct job's log in child pipelines, and the requested pipeline's jobs + * feat(df): add caching decorator for the policy checker + * fix(glrepo): key subfolder config lookup on host with port + * chore(deps): update dependency @commitlint/config-conventional to ^21.2.2 + * fix(auth): skip OAuth2 refresh in helper for PAT hosts + * feat(artifact-registry): add glab artifact-registry login --gradle/--npm/--sbt + * chore(deps): update dependency @commitlint/lint to ^21.2.2 + * chore(deps): update dependency @commitlint/cli to ^21.2.2 + * refactor(commands): inline embedded .md help text and forbid the pattern + * chore(codeowners): introduce modular CODEOWNERS + * feat(snap): expose password-manager-service plug and guide users to connect it + * docs(auth): document glab in the Claude Code sandbox + * feat(df): add policy checker interface, types, and fake + * feat(artifact-registry): add glab artifact-registry login --maven + * chore(lint): sync Vale configuration from the gitlab project + * fix(mr): report accurate merge state instead of always "Merged!" + * feat(config): add `config path` command + * chore(deps): update module golang.org/x/crypto to v0.55.0 + * chore(deps): update module charm.land/lipgloss/v2 to v2.0.6 + * feat(df): add PURL parser + * chore(deps): update module golang.org/x/text to v0.41.0 + * feat: add --description-file to issue, MR, and work item commands + * feat(df): mark dependency firewall commands as experimental +- Remove glab-CVE-2026-39821-idna-punycode.patch: no longer needed, + as 1.115.0 vendors golang.org/x/net v0.57.0, which removes the + unicode16 version gate unconditionally and fixes CVE-2026-39821 + (boo#1266614) regardless of Go's unicode.Version. + +------------------------------------------------------------------- Old: ---- glab-1.114.0.obscpio glab-CVE-2026-39821-idna-punycode.patch New: ---- glab-1.115.0.obscpio ----------(Old B)---------- Old: * feat(df): mark dependency firewall commands as experimental - Remove glab-CVE-2026-39821-idna-punycode.patch: no longer needed, as 1.115.0 vendors golang.org/x/net v0.57.0, which removes the ----------(Old E)---------- ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ glab.spec ++++++ --- /var/tmp/diff_new_pack.r4HHZP/_old 2026-08-26 19:57:23.225505046 +0200 +++ /var/tmp/diff_new_pack.r4HHZP/_new 2026-08-26 19:57:23.231505258 +0200 @@ -18,7 +18,7 @@ Name: glab -Version: 1.114.0 +Version: 1.115.0 Release: 0 Summary: A GitLab command line tool License: MIT @@ -27,10 +27,6 @@ Source1: vendor.tar.gz # https://sources.debian.org/src/glab/1.49.0-1/debian/patches/0001-Disable-update-check.patch Patch0: glab-disable_update_check.patch -# PATCH-FIX-UPSTREAM glab-CVE-2026-39821-idna-punycode.patch boo#1266614 [email protected] -# Backport of golang.org/x/net commit f05f21be5927155a88b371674c298ada54b71cf5: -# reject all-ASCII xn-- Punycode labels regardless of Go's unicode.Version. -Patch1: glab-CVE-2026-39821-idna-punycode.patch BuildRequires: bash-completion BuildRequires: fish BuildRequires: zsh ++++++ _service ++++++ --- /var/tmp/diff_new_pack.r4HHZP/_old 2026-08-26 19:57:23.303507801 +0200 +++ /var/tmp/diff_new_pack.r4HHZP/_new 2026-08-26 19:57:23.307507942 +0200 @@ -3,7 +3,7 @@ <param name="url">https://gitlab.com/gitlab-org/cli.git</param> <param name="scm">git</param> <param name="package-meta">yes</param> - <param name="revision">refs/tags/v1.114.0</param> + <param name="revision">refs/tags/v1.115.0</param> <param name="versionformat">@PARENT_TAG@</param> <param name="versionrewrite-pattern">v(.*)</param> <param name="changesgenerate">enable</param> ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.r4HHZP/_old 2026-08-26 19:57:23.329508719 +0200 +++ /var/tmp/diff_new_pack.r4HHZP/_new 2026-08-26 19:57:23.332508825 +0200 @@ -1,6 +1,6 @@ <servicedata> <service name="tar_scm"> <param name="url">https://gitlab.com/gitlab-org/cli.git</param> - <param name="changesrevision">4d7c6cda781ab2922c6f207d50cf744461c0e965</param></service></servicedata> + <param name="changesrevision">c3612c8deb89183da68aa0d31ca1f748f381d820</param></service></servicedata> (No newline at EOF) ++++++ glab-1.114.0.obscpio -> glab-1.115.0.obscpio ++++++ ++++ 19615 lines of diff (skipped) ++++++ glab.obsinfo ++++++ --- /var/tmp/diff_new_pack.r4HHZP/_old 2026-08-26 19:57:25.501585429 +0200 +++ /var/tmp/diff_new_pack.r4HHZP/_new 2026-08-26 19:57:25.508585676 +0200 @@ -1,5 +1,5 @@ name: glab -version: 1.114.0 -mtime: 1787024275 -commit: 4d7c6cda781ab2922c6f207d50cf744461c0e965 +version: 1.115.0 +mtime: 1787638636 +commit: c3612c8deb89183da68aa0d31ca1f748f381d820 ++++++ vendor.tar.gz ++++++ /work/SRC/openSUSE:Factory/glab/vendor.tar.gz /work/SRC/openSUSE:Factory/.glab.new.1258/vendor.tar.gz differ: char 19, line 1
