Hello community, here is the log from the commit of package webkit2gtk3 for openSUSE:Factory checked in at 2018-01-16 09:29:33 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/webkit2gtk3 (Old) and /work/SRC/openSUSE:Factory/.webkit2gtk3.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "webkit2gtk3" Tue Jan 16 09:29:33 2018 rev:50 rq:563587 version:2.18.5 Changes: -------- --- /work/SRC/openSUSE:Factory/webkit2gtk3/webkit2gtk3.changes 2017-12-29 18:48:08.060720125 +0100 +++ /work/SRC/openSUSE:Factory/.webkit2gtk3.new/webkit2gtk3.changes 2018-01-16 09:29:34.681608263 +0100 @@ -1,0 +2,10 @@ +Wed Jan 10 12:45:30 UTC 2018 - [email protected] + +- Update to version 2.18.5: + + Disable SharedArrayBuffers from Web API. + + Reduce the precision of “high” resolution time to 1ms. + + Fix API documentation generation with newer gtk-doc. + + bsc#1075419 - Security fixes: includes improvements to mitigate + the effects of Spectre (CVE-2017-5753 and CVE-2017-5715). + +------------------------------------------------------------------- @@ -16,2 +26,2 @@ - + Security fixes: CVE-2017-13866, CVE-2017-13870, CVE-2017-7156, - CVE-2017-13856. + + bsc#1073654 - Security fixes: CVE-2017-13866, CVE-2017-13870, + CVE-2017-7156, CVE-2017-13856. @@ -33 +43,2 @@ - + Security fixes: CVE-2017-13798, CVE-2017-13788, CVE-2017-13803. + + bsc#1069925 - Security fixes: CVE-2017-13798, CVE-2017-13788, + CVE-2017-13803. @@ -61,6 +72,7 @@ - + Security fixes: CVE-2017-7081, CVE-2017-7087, CVE-2017-7089, - CVE-2017-7090, CVE-2017-7091, CVE-2017-7092, CVE-2017-7093, - CVE-2017-7094, CVE-2017-7095, CVE-2017-7096, CVE-2017-7098, - CVE-2017-7099, CVE-2017-7100, CVE-2017-7102, CVE-2017-7104, - CVE-2017-7107, CVE-2017-7109, CVE-2017-7111, CVE-2017-7117, - CVE-2017-7120, CVE-2017-7142. + + bsc#1066892 - Security fixes: CVE-2017-7081, CVE-2017-7087, + CVE-2017-7089, CVE-2017-7090, CVE-2017-7091, CVE-2017-7092, + CVE-2017-7093, CVE-2017-7094, CVE-2017-7095, CVE-2017-7096, + CVE-2017-7098, CVE-2017-7099, CVE-2017-7100, CVE-2017-7102, + CVE-2017-7104, CVE-2017-7107, CVE-2017-7109, CVE-2017-7111, + CVE-2017-7117, CVE-2017-7120, CVE-2017-7142. + + bsc#1073654 - Security fixes: CVE-2017-7157. @@ -221,3 +233,4 @@ - + Security fixes: CVE-2017-7039, CVE-2017-7018, CVE-2017-7030, - CVE-2017-7037, CVE-2017-7034, CVE-2017-7055, CVE-2017-7056, - CVE-2017-7064, CVE-2017-7061, CVE-2017-7048, CVE-2017-7046. + + bsc#1050469 - Security fixes: CVE-2017-7039, CVE-2017-7018, + CVE-2017-7030, CVE-2017-7037, CVE-2017-7034, CVE-2017-7055, + CVE-2017-7056, CVE-2017-7064, CVE-2017-7061, CVE-2017-7048, + CVE-2017-7046. @@ -243,0 +257 @@ + + bsc#1050469 - Security fixes: CVE-2017-7052. @@ -268 +282,2 @@ - + Security fixes: CVE-2017-2496, CVE-2017-2539, CVE-2017-2510. + + bsc#1050469 - Security fixes: CVE-2017-2496, CVE-2017-2539, + CVE-2017-2510, CVE-2017-7011, CVE-2017-7040, CVE-2017-7059. @@ -286,0 +302,3 @@ + + bsc#1050469 - Security fixes: CVE-2017-7006, CVE-2017-7012, + CVE-2017-7019, CVE-2017-7038, CVE-2017-7041, CVE-2017-7042, + CVE-2017-7043, CVE-2017-7049. @@ -300,0 +319 @@ + + bsc#1050469 - Security fixes: CVE-2017-7020. @@ -460,4 +479,4 @@ - + Security fixes: CVE-2017-2365, CVE-2017-2366, CVE-2017-2373, - CVE-2017-2363, CVE-2017-2362, CVE-2017-2350, CVE-2017-2350, - CVE-2017-2354, CVE-2017-2355, CVE-2017-2356, CVE-2017-2371, - CVE-2017-2364, CVE-2017-2369. + + bsc#1024749 - Security fixes: CVE-2017-2365, CVE-2017-2366, + CVE-2017-2373, CVE-2017-2363, CVE-2017-2362, CVE-2017-2350, + CVE-2017-2350, CVE-2017-2354, CVE-2017-2355, CVE-2017-2356, + CVE-2017-2371, CVE-2017-2364, CVE-2017-2369. @@ -483,4 +502,5 @@ - + Security fixes: CVE-2016-7656, CVE-2016-7635, CVE-2016-7654, - CVE-2016-7639, CVE-2016-7645, CVE-2016-7652, CVE-2016-7641, - CVE-2016-7632, CVE-2016-7599, CVE-2016-7592, CVE-2016-7589, - CVE-2016-7623, CVE-2016-7586. + + bsc#1020950 - Security fixes: CVE-2016-7656, CVE-2016-7635, + CVE-2016-7654, CVE-2016-7639, CVE-2016-7645, CVE-2016-7652, + CVE-2016-7641, CVE-2016-7632, CVE-2016-7599, CVE-2016-7592, + CVE-2016-7589, CVE-2016-7623, CVE-2016-7586. + @@ -538,0 +559 @@ + + bsc#1020950 - Security fixes: CVE-2016-4692, CVE-2016-7610. @@ -555,0 +577,3 @@ + + bsc#1020950 - Security fixes: CVE-2016-4743, CVE-2016-7587, + CVE-2016-7598. + Old: ---- webkitgtk-2.18.4.tar.xz New: ---- webkitgtk-2.18.5.tar.xz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ webkit2gtk3.spec ++++++ --- /var/tmp/diff_new_pack.e6OfMB/_old 2018-01-16 09:29:35.921550249 +0100 +++ /var/tmp/diff_new_pack.e6OfMB/_new 2018-01-16 09:29:35.925550063 +0100 @@ -1,7 +1,7 @@ # # spec file for package webkit2gtk3 # -# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -35,7 +35,7 @@ %endif Name: webkit2gtk3 -Version: 2.18.4 +Version: 2.18.5 Release: 0 Summary: Library for rendering web content, GTK+ Port License: LGPL-2.0+ AND BSD-3-Clause ++++++ webkitgtk-2.18.4.tar.xz -> webkitgtk-2.18.5.tar.xz ++++++ /work/SRC/openSUSE:Factory/webkit2gtk3/webkitgtk-2.18.4.tar.xz /work/SRC/openSUSE:Factory/.webkit2gtk3.new/webkitgtk-2.18.5.tar.xz differ: char 27, line 1
