Hello community, here is the log from the commit of package texlive for openSUSE:Factory checked in at 2017-03-18 20:48:08 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/texlive (Old) and /work/SRC/openSUSE:Factory/.texlive.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "texlive" Sat Mar 18 20:48:08 2017 rev:33 rq:479687 version:unknown Changes: -------- --- /work/SRC/openSUSE:Factory/texlive/texlive.changes 2016-12-16 11:57:58.504793084 +0100 +++ /work/SRC/openSUSE:Factory/.texlive.new/texlive.changes 2017-03-18 20:48:09.942149760 +0100 @@ -1,0 +2,6 @@ +Wed Mar 8 12:02:02 UTC 2017 - [email protected] + +- Modify patch kpathsea_cnf.dif to remove mpost from the allowed + shell escaping commands (bsc#1028271, CVE-2016-10243) + +------------------------------------------------------------------- ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ texlive.spec ++++++ --- /var/tmp/diff_new_pack.64ZvKI/_old 2017-03-18 20:48:11.837881193 +0100 +++ /var/tmp/diff_new_pack.64ZvKI/_new 2017-03-18 20:48:11.845880061 +0100 @@ -1,7 +1,7 @@ # # spec file for package texlive # -# Copyright (c) 2016 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed ++++++ source.dif ++++++ --- /var/tmp/diff_new_pack.64ZvKI/_old 2017-03-18 20:48:11.961863629 +0100 +++ /var/tmp/diff_new_pack.64ZvKI/_new 2017-03-18 20:48:11.961863629 +0100 @@ -634,7 +634,15 @@ % % For reference, here is the old brace-using definition: %TEXMFCNF = {$SELFAUTOLOC,$SELFAUTODIR,$SELFAUTOPARENT}{,{/share,}/texmf{-local,}/web2c} -@@ -791,3 +792,33 @@ max_cols.gftype = 8191 +@@ -568,7 +569,6 @@ extractbb,\ + gregorio,\ + kpsewhich,\ + makeindex,\ +-mpost,\ + repstopdf,\ + + % we'd like to allow: +@@ -791,3 +791,33 @@ max_cols.gftype = 8191 % Guess input encoding (SJIS vs. Unicode, etc.) in pTeX and friends? % Default is 0, to not guess. guess_input_kanji_encoding = 1
