Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package tor for openSUSE:Factory checked in at 2021-06-15 16:37:46 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/tor (Old) and /work/SRC/openSUSE:Factory/.tor.new.32437 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "tor" Tue Jun 15 16:37:46 2021 rev:95 rq:900011 version:0.4.5.9 Changes: -------- --- /work/SRC/openSUSE:Factory/tor/tor.changes 2021-05-18 18:27:26.250703646 +0200 +++ /work/SRC/openSUSE:Factory/.tor.new.32437/tor.changes 2021-06-15 16:38:17.565792802 +0200 @@ -1,0 +2,9 @@ +Mon Jun 14 18:06:34 UTC 2021 - Bernhard Wiedemann <bwiedem...@suse.com> + +- tor 0.4.5.9 + * Don't allow relays to spoof RELAY_END or RELAY_RESOLVED cell (CVE-2021-34548, boo#1187322) + * Detect more failure conditions from the OpenSSL RNG code (boo#1187323) + * Resist a hashtable-based CPU denial-of-service attack against relays (CVE-2021-34549, boo#1187324) + * Fix an out-of-bounds memory access in v3 onion service descriptor parsing (CVE-2021-34550, boo#1187325) + +------------------------------------------------------------------- Old: ---- tor-0.4.5.8.tar.gz tor-0.4.5.8.tar.gz.asc New: ---- tor-0.4.5.9.tar.gz tor-0.4.5.9.tar.gz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ tor.spec ++++++ --- /var/tmp/diff_new_pack.Bkqnhx/_old 2021-06-15 16:38:18.269794021 +0200 +++ /var/tmp/diff_new_pack.Bkqnhx/_new 2021-06-15 16:38:18.273794029 +0200 @@ -20,7 +20,7 @@ %define torgroup %{name} %define home_dir %{_localstatedir}/lib/empty Name: tor -Version: 0.4.5.8 +Version: 0.4.5.9 Release: 0 Summary: Anonymizing overlay network for TCP (The onion router) License: BSD-3-Clause ++++++ tor-0.4.5.8.tar.gz -> tor-0.4.5.9.tar.gz ++++++ /work/SRC/openSUSE:Factory/tor/tor-0.4.5.8.tar.gz /work/SRC/openSUSE:Factory/.tor.new.32437/tor-0.4.5.9.tar.gz differ: char 30, line 1