Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package nodejs16 for openSUSE:Factory checked in at 2021-08-24 10:54:08 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/nodejs16 (Old) and /work/SRC/openSUSE:Factory/.nodejs16.new.1899 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "nodejs16" Tue Aug 24 10:54:08 2021 rev:10 rq:913180 version:16.6.2 Changes: -------- --- /work/SRC/openSUSE:Factory/nodejs16/nodejs16.changes 2021-08-17 10:42:10.389749469 +0200 +++ /work/SRC/openSUSE:Factory/.nodejs16.new.1899/nodejs16.changes 2021-08-24 10:54:47.880326895 +0200 @@ -1,0 +2,16 @@ +Thu Aug 12 13:51:48 UTC 2021 - Adam Majer <adam.ma...@suse.de> + +- Update to 16.6.2: + * CVE-2021-3672/CVE-2021-22931: Improper handling of untypical + characters in domain names (bsc#1189370, bsc#1188881) + * CVE-2021-22940: Use after free on close http2 on stream canceling + (bsc#1189368) + * CVE-2021-22939: Incomplete validation of rejectUnauthorized parameter + (bsc#1189369) + * deps: upgrade npm to 7.20.3 + * deps: revert ABI-breaking change from V8 9.2 + * module: fix ERR_REQUIRE_ESM error for null frames + +- cares_public_headers.patch: don't use private headers + +------------------------------------------------------------------- Old: ---- node-v16.6.0.tar.xz New: ---- cares_public_headers.patch node-v16.6.2.tar.xz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ nodejs16.spec ++++++ --- /var/tmp/diff_new_pack.QDSnnf/_old 2021-08-24 10:54:48.776325708 +0200 +++ /var/tmp/diff_new_pack.QDSnnf/_new 2021-08-24 10:54:48.780325703 +0200 @@ -32,7 +32,7 @@ %endif Name: nodejs16 -Version: 16.6.0 +Version: 16.6.2 Release: 0 # Double DWZ memory limits @@ -131,6 +131,7 @@ Source20: bash_output_helper.bash ## Patches not distribution specific +Patch1: cares_public_headers.patch Patch3: fix_ci_tests.patch Patch5: sle12_python3_compat.patch Patch7: manual_configure.patch @@ -253,7 +254,7 @@ %if ! 0%{with intree_cares} BuildRequires: pkgconfig(libcares) >= 1.17.0 %else -Provides: bundled(libcares2) = 1.17.1 +Provides: bundled(libcares2) = 1.17.2 %endif %if ! 0%{with intree_icu} @@ -354,7 +355,7 @@ Provides: nodejs-npm = %{version} Obsoletes: nodejs-npm < 4.0.0 Provides: npm = %{version} -Provides: npm(npm) = 7.19.1 +Provides: npm(npm) = 7.20.3 %if 0%{?suse_version} >= 1500 %if %{node_version_number} >= 10 Requires: group(nobody) @@ -491,13 +492,13 @@ Provides: bundled(node-libnpmteam) = 2.0.4 Provides: bundled(node-libnpmversion) = 1.2.1 Provides: bundled(node-lru-cache) = 6.0.0 -Provides: bundled(node-make-fetch-happen) = 9.0.3 -Provides: bundled(node-mime-db) = 1.48.0 -Provides: bundled(node-mime-types) = 2.1.31 +Provides: bundled(node-make-fetch-happen) = 9.0.4 +Provides: bundled(node-mime-db) = 1.49.0 +Provides: bundled(node-mime-types) = 2.1.32 Provides: bundled(node-minimatch) = 3.0.4 Provides: bundled(node-minipass) = 3.1.3 Provides: bundled(node-minipass-collect) = 1.0.2 -Provides: bundled(node-minipass-fetch) = 1.3.3 +Provides: bundled(node-minipass-fetch) = 1.3.4 Provides: bundled(node-minipass-flush) = 1.0.5 Provides: bundled(node-minipass-json-stream) = 1.0.1 Provides: bundled(node-minipass-pipeline) = 1.2.4 @@ -529,7 +530,7 @@ Provides: bundled(node-once) = 1.4.0 Provides: bundled(node-opener) = 1.5.2 Provides: bundled(node-p-map) = 4.0.0 -Provides: bundled(node-pacote) = 11.3.4 +Provides: bundled(node-pacote) = 11.3.5 Provides: bundled(node-parse-conflict-json) = 1.1.1 Provides: bundled(node-path-is-absolute) = 1.0.1 Provides: bundled(node-path-parse) = 1.0.7 @@ -639,6 +640,7 @@ tar Jxf %{SOURCE5} --directory=tools/gyp --strip-components=1 %endif +%patch1 -p1 %patch3 -p1 %patch5 -p1 %patch7 -p1 @@ -653,8 +655,6 @@ %endif %patch104 -p1 %patch106 -p1 -%if 0%{?suse_version} >= 1550 -%endif %patch110 -p1 %patch120 -p1 %patch200 -p1 ++++++ SHASUMS256.txt ++++++ --- /var/tmp/diff_new_pack.QDSnnf/_old 2021-08-24 10:54:48.824325645 +0200 +++ /var/tmp/diff_new_pack.QDSnnf/_new 2021-08-24 10:54:48.828325639 +0200 @@ -1,34 +1,34 @@ -ed07957f3c6075294cb1c5ed5760b8471c6fab880fd85bb29dabd44d64d12869 node-v16.6.0-aix-ppc64.tar.gz -07720d1bc18dca0bb3abdcd3c2e4f39a7cb532ca7f56c48bd42a4233de7fcd89 node-v16.6.0-darwin-arm64.tar.gz -95218b0cc0a90264be5a7dc30014ac46748f2f9468d39ba79ba3359524004ebf node-v16.6.0-darwin-arm64.tar.xz -4dc28f83bc1165ae28c937458b7277b4af3ff8c6e61cccf2d9b87b4bfbcbffec node-v16.6.0-darwin-x64.tar.gz -49800406470cc756ee511dc0ea3306c32faeaf280bc87668b62494475adc3569 node-v16.6.0-darwin-x64.tar.xz -f61ce6ba822f6710a45aff9dc5e64879670b93c454ce66881df579895964bb12 node-v16.6.0-headers.tar.gz -484ce3c7d0fa58f7495c7ecb263a5c7940f3d1b1f2a34769421f5ad1d6627eb6 node-v16.6.0-headers.tar.xz -046a352a4ff2f986a026622dc61c0f9c38cb07099e63b643ca5a5ee12c8ac5bd node-v16.6.0-linux-arm64.tar.gz -8dd59632de8eadb49723b86e04d7940f7c80d96167a9fd1c4e39d7df2d145b52 node-v16.6.0-linux-arm64.tar.xz -1a991b4f706064c6eba27652021dbccd510b056a121316b182e43d54b2a4a0cc node-v16.6.0-linux-armv7l.tar.gz -fb51660c4b22600f417314879ac8cc3ce8a2114b74b92493229e5941885c1552 node-v16.6.0-linux-armv7l.tar.xz -6f1dbb2cf8f8936a5c2c2a4a8980067e658084992ec6811606d2479466acd497 node-v16.6.0-linux-ppc64le.tar.gz -bf0c1e42bc6d149c7800b2ae01d174a59ee9ead2157481c3a8ae0b1a7ec41c69 node-v16.6.0-linux-ppc64le.tar.xz -c9b836129c4bc75e1932202628ab17857aa11d8dbde835db772a05240f041638 node-v16.6.0-linux-s390x.tar.gz -397ebd068a8fc9e2b05e54001609f5d386102c4f3d539e750614414623024b72 node-v16.6.0-linux-s390x.tar.xz -4658500d47ab2373b9c5ffb8256bd4e514b6326a6c8a9c6186105fba4de75548 node-v16.6.0-linux-x64.tar.gz -0f3cc33cfaa85e156bd694c7375196002b45d7fa7e50615b02bff8cf16d4767b node-v16.6.0-linux-x64.tar.xz -60450ae814a0c29e703e8ae417604edad688c46b007a761d3def2d0600387405 node-v16.6.0.pkg -cb24f609abba81a27536955135f0b3ca0b72e70b7aa561fec39490b386bba7ab node-v16.6.0.tar.gz -5c5714a08b0881f37b57ab1f1b4801a1af316a2aea17faedc9c2d43247c7b9d9 node-v16.6.0.tar.xz -58d9ec0876256d68040d35a606f18dcbf1331da63adfb96af17e43179f6e9f1b node-v16.6.0-win-x64.7z -479bd81469ade081381d441de9e3dc9a1d276ec8408f3297f282452dac7b0b3c node-v16.6.0-win-x64.zip -ce52307b52e994d763f5da048bf3db3811bf9771d19d63bf96c8937499c7d29b node-v16.6.0-win-x86.7z -9f21096d494328cf724de4a9ef00e8d1412e6882243e952917eeb67dae232086 node-v16.6.0-win-x86.zip -dcbfe8fd618383117abf158ae8af2c7584ddff77a0102f349d45f612e8b1e633 node-v16.6.0-x64.msi -f26e9e749eb339cabc53150091542f5acd75bed4fbbdfb86dfa226290c6e2293 node-v16.6.0-x86.msi -552e7a2d278a5c4b66aeafed2cfadacae06df040b55140ef764eb555bc82c507 win-x64/node.exe -2756cffae3acb00752ee92d5cabd252881ce5104620fde5f594de0ae9f5d324e win-x64/node.lib -7e58d85a01e9ce1f58a4e2dec2c039aaa56f983c8461ed1d6921135ba7cda8d8 win-x64/node_pdb.7z -a226d6ce4492158396d7e86192bb5cd81cc6ecaac5ac7e0f05e654124dfc543a win-x64/node_pdb.zip -81b0a47aede508406f69f47566928a411710402362c96e78783723c8d2f89c84 win-x86/node.exe -53e28b2d2a0c06c438081c39d45c34782d8052a87dd0c59b3388ba9212f5eb6f win-x86/node.lib -ffa06f2808a23f9ef1790e6c80dc3179a881adca8c1abf2eab94eb10aa6b9509 win-x86/node_pdb.7z -4616b9abc301daf257668f2c24097d167a93335ac6ae711bec1e212f76348beb win-x86/node_pdb.zip +2a51635501451a88f6addc192a79b6d36cc40dcf3a198a54037ab26fa6305043 node-v16.6.2-aix-ppc64.tar.gz +29e46e83f6837ff1c815c49f590c25fa51b0811a6590c62120a9d464ba431fc6 node-v16.6.2-darwin-arm64.tar.gz +befbfdec7c2118689544ef596e990aae2fcd1227707c6a8475056be14ce2ee8d node-v16.6.2-darwin-arm64.tar.xz +74e95aca0ea88ed2d9270dccc1e3e62500912be5fef1528bb11f178c468f312c node-v16.6.2-darwin-x64.tar.gz +21c9417c38d9bee140c659f7cf11806ec866af3f7053bd17ec45757a902c9956 node-v16.6.2-darwin-x64.tar.xz +7764da71e22d57746d65eb408dc80cbd7f6eed7f38b558684fa60571d1c69b26 node-v16.6.2-headers.tar.gz +e4bf9c8db91d149d9f3cebd79621571079ffb9d92dca10e7d260120ff99b428e node-v16.6.2-headers.tar.xz +c51a94f28a29c390d20445d9b334a9808d3166bd244ebc03852d23c0b17a93ca node-v16.6.2-linux-arm64.tar.gz +d885ffcef367a010e2b21a283ec96721e92b29f222de5d943bc7188e48f30349 node-v16.6.2-linux-arm64.tar.xz +1ba5287c941cef2da53c0d80db7db7124971b1c933f222ca7f2eb833e1817f35 node-v16.6.2-linux-armv7l.tar.gz +9756e763910ab7277346307fb5c4d34370ab3bb7d957129f58a65bf69f2af93b node-v16.6.2-linux-armv7l.tar.xz +a966ea0d258c0e4a2c23b77f49f85bd7a4a4ff674fcd0d625a7fa48370d14d15 node-v16.6.2-linux-ppc64le.tar.gz +c2ee7961f1f217b0cc57a15efc3372b0495f6e1775a3e7f50b153b9db7c46be9 node-v16.6.2-linux-ppc64le.tar.xz +31e27413ff29607af54fcf842105a5290f2556add1b009b8e28240f96f742638 node-v16.6.2-linux-s390x.tar.gz +c3d6b4f7bf055f257abc07862743b614bdba00fd096a863eaadc700ae0939c98 node-v16.6.2-linux-s390x.tar.xz +913913f62416b96dee5f463b54e1adebaf669dd2ff3b047d6290deadc3003d97 node-v16.6.2-linux-x64.tar.gz +90c88cf6ca06dcd6d20c2b6dba5ff84d1f831446c25ef650f86e86bb94239353 node-v16.6.2-linux-x64.tar.xz +5bb14dafbac87efb74d3e050a90de68eb407ecadd52f12a1b4e937ec59884792 node-v16.6.2.pkg +e8df4a0084c379a37c11b315b7d068760a38598119d7ca9262977adcbbb58933 node-v16.6.2.tar.gz +8794cba1f971e4200a38690c76d7cc0a3bd1cba96fbf4305dfbe21fc459d79eb node-v16.6.2.tar.xz +152e36fe0493f37d3be939c7f9c3a975c9f39a3346d66787b59e2db28ed2eeb6 node-v16.6.2-win-x64.7z +e7e05eb133fce48b76b4db6714d80aea90872afec176599585bc1aa457fb41b9 node-v16.6.2-win-x64.zip +b40c0f3bf401ff56c558de3a24b33101273c622e664e1e5df4d08444aa4ae7df node-v16.6.2-win-x86.7z +b7324b70ed37e14878cde39cd69099368513068495b25d97f1423591c0206685 node-v16.6.2-win-x86.zip +6cb05e722749c98cc9d0d1b2ef0c3a4c5c05da83a00b4ef04cee0bd4a3cfbbc7 node-v16.6.2-x64.msi +22b21336d6ae8d16a1e45d38bd198831aa27ddf8a61d52831cfbd3ba5d2866e0 node-v16.6.2-x86.msi +9c99a5255dabc044bd262df07ec8e6ba3351e38d003121ed8739906bf5f0eb42 win-x64/node.exe +e7484e4552df7e992e5d409e518aa467555769dc85917da408d41f85c4f2823d win-x64/node.lib +a44ba1e9c42f84d80a9c29871a22c687e7f35ae358a898813d50b02866b8d6e9 win-x64/node_pdb.7z +bfdfedc1829855dcb1545661963dcb98d72ea517a4be3926a8c35f5120a72637 win-x64/node_pdb.zip +5dc410d110cb86a0e9fd58f30b5c1208915e733e3ab222e71fbdb0aa1a3755f3 win-x86/node.exe +7821ab6af3cef68eee042ef6b7fb2185eafff8bd4e4c988c8fc6c1d0242d2bcd win-x86/node.lib +cee7fe2c53d99e9c7bca0e7485a35c49d0f01ad131a790199cdb68e1383b946d win-x86/node_pdb.7z +32f1c9673025980c1563bf173c02bf3ae81a0a8c0e30673a3e906b3adff0519a win-x86/node_pdb.zip ++++++ SHASUMS256.txt.sig ++++++ Binary files /var/tmp/diff_new_pack.QDSnnf/_old and /var/tmp/diff_new_pack.QDSnnf/_new differ ++++++ cares_public_headers.patch ++++++ Index: node-v14.17.5/src/cares_wrap.h =================================================================== --- node-v14.17.5.orig/src/cares_wrap.h +++ node-v14.17.5/src/cares_wrap.h @@ -22,7 +22,7 @@ # include <netdb.h> #endif // __POSIX__ -# include <ares_nameser.h> +#include <arpa/nameser.h> namespace node { namespace cares_wrap { ++++++ node-v16.6.0.tar.xz -> node-v16.6.2.tar.xz ++++++ /work/SRC/openSUSE:Factory/nodejs16/node-v16.6.0.tar.xz /work/SRC/openSUSE:Factory/.nodejs16.new.1899/node-v16.6.2.tar.xz differ: char 26, line 1