Hello community,

here is the log from the commit of package texlive for openSUSE:Factory checked 
in at 2017-03-18 20:48:08
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/texlive (Old)
 and      /work/SRC/openSUSE:Factory/.texlive.new (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "texlive"

Sat Mar 18 20:48:08 2017 rev:33 rq:479687 version:unknown

Changes:
--------
--- /work/SRC/openSUSE:Factory/texlive/texlive.changes  2016-12-16 
11:57:58.504793084 +0100
+++ /work/SRC/openSUSE:Factory/.texlive.new/texlive.changes     2017-03-18 
20:48:09.942149760 +0100
@@ -1,0 +2,6 @@
+Wed Mar  8 12:02:02 UTC 2017 - [email protected]
+
+- Modify patch kpathsea_cnf.dif to remove mpost from the allowed
+  shell escaping commands (bsc#1028271, CVE-2016-10243)
+
+-------------------------------------------------------------------

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ texlive.spec ++++++
--- /var/tmp/diff_new_pack.64ZvKI/_old  2017-03-18 20:48:11.837881193 +0100
+++ /var/tmp/diff_new_pack.64ZvKI/_new  2017-03-18 20:48:11.845880061 +0100
@@ -1,7 +1,7 @@
 #
 # spec file for package texlive
 #
-# Copyright (c) 2016 SUSE LINUX GmbH, Nuernberg, Germany.
+# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany.
 #
 # All modifications and additions to the file contributed by third parties
 # remain the property of their copyright owners, unless otherwise agreed

++++++ source.dif ++++++
--- /var/tmp/diff_new_pack.64ZvKI/_old  2017-03-18 20:48:11.961863629 +0100
+++ /var/tmp/diff_new_pack.64ZvKI/_new  2017-03-18 20:48:11.961863629 +0100
@@ -634,7 +634,15 @@
  %
  % For reference, here is the old brace-using definition:
  %TEXMFCNF = 
{$SELFAUTOLOC,$SELFAUTODIR,$SELFAUTOPARENT}{,{/share,}/texmf{-local,}/web2c}
-@@ -791,3 +792,33 @@ max_cols.gftype = 8191
+@@ -568,7 +569,6 @@ extractbb,\
+ gregorio,\
+ kpsewhich,\
+ makeindex,\
+-mpost,\
+ repstopdf,\
+ 
+ % we'd like to allow:
+@@ -791,3 +791,33 @@ max_cols.gftype = 8191
  % Guess input encoding (SJIS vs. Unicode, etc.) in pTeX and friends?
  % Default is 0, to not guess.
  guess_input_kanji_encoding = 1


Reply via email to