Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package znc for openSUSE:Factory checked in at 2024-07-08 19:09:20 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/znc (Old) and /work/SRC/openSUSE:Factory/.znc.new.2080 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "znc" Mon Jul 8 19:09:20 2024 rev:30 rq:1186187 version:1.9.1 Changes: -------- --- /work/SRC/openSUSE:Factory/znc/znc.changes 2024-05-03 19:45:38.695240241 +0200 +++ /work/SRC/openSUSE:Factory/.znc.new.2080/znc.changes 2024-07-08 19:09:44.794001521 +0200 @@ -1,0 +2,11 @@ +Fri Jul 5 06:21:35 UTC 2024 - Michael Vetter <[email protected]> + +- Update to 1.9.1 (boo#1227393, CVE-2024-39844) + * This is a security release to fix CVE-2024-39844: remote code + execution vulnerability in modtcl. + To mitigate this for existing installations, simply unload the + modtcl module for every user, if it's loaded. Note that only + users with admin rights can load modtcl at all. + * Improve tooltips in webadmin. + +------------------------------------------------------------------- Old: ---- znc-1.9.0.tar.gz znc-1.9.0.tar.gz.sig New: ---- znc-1.9.1.tar.gz znc-1.9.1.tar.gz.sig ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ znc.spec ++++++ --- /var/tmp/diff_new_pack.VyMko5/_old 2024-07-08 19:09:45.558029465 +0200 +++ /var/tmp/diff_new_pack.VyMko5/_new 2024-07-08 19:09:45.558029465 +0200 @@ -17,7 +17,7 @@ Name: znc -Version: 1.9.0 +Version: 1.9.1 Release: 0 Summary: Advanced IRC Bouncer License: Apache-2.0 ++++++ znc-1.9.0.tar.gz -> znc-1.9.1.tar.gz ++++++ ++++ 20554 lines of diff (skipped)
