Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package git for openSUSE:Factory checked in at 2023-01-20 17:37:14 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/git (Old) and /work/SRC/openSUSE:Factory/.git.new.32243 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "git" Fri Jan 20 17:37:14 2023 rev:293 rq:1059326 version:2.39.1 Changes: -------- --- /work/SRC/openSUSE:Factory/git/git.changes 2022-12-16 17:51:06.723839448 +0100 +++ /work/SRC/openSUSE:Factory/.git.new.32243/git.changes 2023-01-20 17:37:15.320048363 +0100 @@ -1,0 +2,9 @@ +Tue Jan 17 19:13:03 UTC 2023 - Andreas Stieger <andreas.stie...@gmx.de> + +- git 2.39.1, fixing two security issues that could allow remote + code execution when accessing specially crafted repositories: + * CVE-2022-41903: log format integer overflow boo#1207033 + * CVE-2022-23521: gitattributed parsing integer overflow + boo#1207032 + +------------------------------------------------------------------- Old: ---- git-2.39.0.tar.sign git-2.39.0.tar.xz New: ---- git-2.39.1.tar.sign git-2.39.1.tar.xz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ git.spec ++++++ --- /var/tmp/diff_new_pack.pegW5V/_old 2023-01-20 17:37:16.232053407 +0100 +++ /var/tmp/diff_new_pack.pegW5V/_new 2023-01-20 17:37:16.240053451 +0100 @@ -1,7 +1,7 @@ # # spec file for package git # -# Copyright (c) 2022 SUSE LLC +# Copyright (c) 2023 SUSE LLC # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -36,7 +36,7 @@ %bcond_with asciidoctor %endif Name: git -Version: 2.39.0 +Version: 2.39.1 Release: 0 Summary: Fast, scalable, distributed revision control system License: GPL-2.0-only ++++++ git-2.39.0.tar.xz -> git-2.39.1.tar.xz ++++++ /work/SRC/openSUSE:Factory/git/git-2.39.0.tar.xz /work/SRC/openSUSE:Factory/.git.new.32243/git-2.39.1.tar.xz differ: char 15, line 1