Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package xstream for openSUSE:Factory checked in at 2021-06-01 10:39:22 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/xstream (Old) and /work/SRC/openSUSE:Factory/.xstream.new.1898 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "xstream" Tue Jun 1 10:39:22 2021 rev:5 rq:896295 version:1.4.17 Changes: -------- --- /work/SRC/openSUSE:Factory/xstream/xstream.changes 2021-04-27 21:34:57.592013190 +0200 +++ /work/SRC/openSUSE:Factory/.xstream.new.1898/xstream.changes 2021-06-01 10:40:57.945170984 +0200 @@ -1,0 +2,9 @@ +Mon May 31 07:59:25 UTC 2021 - Fridrich Strba <[email protected]> + +- Upgrade to 1.4.17 + * Security fix: + * bsc#1186651, CVE-2021-29505: potential code execution when + unmarshalling with XStream instances using an uninitialized + security framework + +------------------------------------------------------------------- Old: ---- xstream-distribution-1.4.16-src.zip New: ---- xstream-distribution-1.4.17-src.zip ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ xstream.spec ++++++ --- /var/tmp/diff_new_pack.bgtN7e/_old 2021-06-01 10:40:58.425171802 +0200 +++ /var/tmp/diff_new_pack.bgtN7e/_new 2021-06-01 10:40:58.425171802 +0200 @@ -19,7 +19,7 @@ %bcond_with hibernate Name: xstream -Version: 1.4.16 +Version: 1.4.17 Release: 0 Summary: Java XML serialization library License: BSD-3-Clause
