Hello community,

here is the log from the commit of package libgit2 for openSUSE:Factory checked 
in at 2018-03-19 23:32:09
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/libgit2 (Old)
 and      /work/SRC/openSUSE:Factory/.libgit2.new (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "libgit2"

Mon Mar 19 23:32:09 2018 rev:29 rq:587053 version:0.26.3

Changes:
--------
--- /work/SRC/openSUSE:Factory/libgit2/libgit2.changes  2018-03-12 
12:09:37.199973519 +0100
+++ /work/SRC/openSUSE:Factory/.libgit2.new/libgit2.changes     2018-03-19 
23:32:11.242753203 +0100
@@ -1,0 +2,21 @@
+Wed Mar 14 09:11:57 UTC 2018 - [email protected]
+
+- Update to 0.26.3:
+  * Fix cloning of the libgit2 project with git clone --recursive by removing 
an
+    invalid submodule from our testing data.
+  * Fix endianness of the port in p_getaddrinfo().
+  * Fix handling of negative gitignore rules with wildcards.
+  * Fix handling of case-insensitive negative gitignore rules.
+  * Fix resolving references to a tag if the reference is stored with its fully
+    resolved OID in the packed-refs file.
+  * Fix checkout not treating worktree files as modified when only their mode 
has
+    changed.
+  * Fix rename detection with GIT_DIFF_FIND_RENAMES_FROM_REWRITES.
+  * Fixes memory handling issues when reading crafted repository index files.
+    The issues allow for possible denial of service due to allocation of large
+    memory and out-of-bound reads.
+    (CVE-2018-8098 bnc#1085257 CVE-2018-8099 bnc#1085256)
+  * Updates the bundled zlib to 1.2.11. Users who build the bundled zlib are
+    vulnerable to security issues in the prior version.
+
+-------------------------------------------------------------------

Old:
----
  libgit2-0.26.0.tar.gz

New:
----
  libgit2-0.26.3.tar.gz

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ libgit2.spec ++++++
--- /var/tmp/diff_new_pack.VUML7E/_old  2018-03-19 23:32:12.242717130 +0100
+++ /var/tmp/diff_new_pack.VUML7E/_new  2018-03-19 23:32:12.250716842 +0100
@@ -19,12 +19,12 @@
 
 %define sover 26
 Name:           libgit2
-Version:        0.26.0
+Version:        0.26.3
 Release:        0
 Summary:        C git library
 License:        GPL-2.0 WITH GCC-exception-2.0
 Group:          Development/Libraries/C and C++
-URL:            http://libgit2.github.com/
+Url:            http://libgit2.github.com/
 Source0:        
https://github.com/libgit2/libgit2/archive/v%{version}.tar.gz#/%{name}-%{version}.tar.gz
 Source99:       baselibs.conf
 BuildRequires:  cmake >= 2.8

++++++ libgit2-0.26.0.tar.gz -> libgit2-0.26.3.tar.gz ++++++
++++ 6796 lines of diff (skipped)


Reply via email to