Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package python-CairoSVG for openSUSE:Factory checked in at 2023-05-10 16:16:22 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/python-CairoSVG (Old) and /work/SRC/openSUSE:Factory/.python-CairoSVG.new.1533 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python-CairoSVG" Wed May 10 16:16:22 2023 rev:12 rq:1085642 version:2.7.0 Changes: -------- --- /work/SRC/openSUSE:Factory/python-CairoSVG/python-CairoSVG.changes 2023-04-22 22:03:35.934342273 +0200 +++ /work/SRC/openSUSE:Factory/.python-CairoSVG.new.1533/python-CairoSVG.changes 2023-05-10 16:16:28.230245696 +0200 @@ -1,0 +2,12 @@ +Tue May 9 06:33:14 UTC 2023 - Daniel Garcia <daniel.gar...@suse.com> + +- Update to 2.7.0: + WARNING: this is a security update. + + When processing SVG files, CairoSVG could access other files online, + possibly leading to very long renderings or other security problems. + + This feature is now disabled by default. External resources can still be + accessed using the "unsafe" or the "url_fetcher" parameter. + +------------------------------------------------------------------- Old: ---- CairoSVG-2.6.0.obscpio New: ---- CairoSVG-2.7.0.obscpio ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ python-CairoSVG.spec ++++++ --- /var/tmp/diff_new_pack.YWHHrP/_old 2023-05-10 16:16:30.870261313 +0200 +++ /var/tmp/diff_new_pack.YWHHrP/_new 2023-05-10 16:16:30.874261336 +0200 @@ -16,11 +16,10 @@ # -%{?!python_module:%define python_module() python-%{**} python3-%{**}} %define skip_python2 1 %{?sle15_python_module_pythons} Name: python-CairoSVG -Version: 2.6.0 +Version: 2.7.0 Release: 0 Summary: A Python SVG converter based on Cairo License: LGPL-3.0-or-later ++++++ CairoSVG-2.6.0.obscpio -> CairoSVG-2.7.0.obscpio ++++++ /work/SRC/openSUSE:Factory/python-CairoSVG/CairoSVG-2.6.0.obscpio /work/SRC/openSUSE:Factory/.python-CairoSVG.new.1533/CairoSVG-2.7.0.obscpio differ: char 46, line 1 ++++++ CairoSVG.obsinfo ++++++ --- /var/tmp/diff_new_pack.YWHHrP/_old 2023-05-10 16:16:30.926261644 +0200 +++ /var/tmp/diff_new_pack.YWHHrP/_new 2023-05-10 16:16:30.930261668 +0200 @@ -1,5 +1,5 @@ name: CairoSVG -version: 2.6.0 -mtime: 1673542007 -commit: f5170f8d5a1cb8f9738228038edd6efab52566d7 +version: 2.7.0 +mtime: 1679322684 +commit: 33007d4af9195e2bfb2ff9af064c4c2d8e4b2b53 ++++++ _service ++++++ --- /var/tmp/diff_new_pack.YWHHrP/_old 2023-05-10 16:16:30.954261810 +0200 +++ /var/tmp/diff_new_pack.YWHHrP/_new 2023-05-10 16:16:30.958261833 +0200 @@ -3,7 +3,7 @@ <param name="url">https://github.com/Kozea/CairoSVG.git</param> <param name="scm">git</param> <param name="submodules">enable</param> - <param name="revision">f5170f8</param> + <param name="revision">33007d4af9195e2bfb2ff9af064c4c2d8e4b2b53</param> <param name="versionformat">@PARENT_TAG@</param> </service> <service mode="buildtime" name="tar" />