Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package python-virtualenv for openSUSE:Factory checked in at 2024-10-25 19:18:57 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/python-virtualenv (Old) and /work/SRC/openSUSE:Factory/.python-virtualenv.new.2020 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python-virtualenv" Fri Oct 25 19:18:57 2024 rev:69 rq:1218086 version:20.26.6 Changes: -------- --- /work/SRC/openSUSE:Factory/python-virtualenv/python-virtualenv.changes 2024-10-16 23:36:12.394590400 +0200 +++ /work/SRC/openSUSE:Factory/.python-virtualenv.new.2020/python-virtualenv.changes 2024-10-25 19:19:29.534249920 +0200 @@ -1,0 +2,12 @@ +Thu Oct 17 15:15:49 UTC 2024 - Dirk Müller <dmuel...@suse.com> + +- update to 20.26.6: + * Properly quote string placeholders in activation script + templates to mitigate potential command injection - by + @y5c4l3. (#2768, in the Python stdlib known as bsc#1232241, + CVE-2024-9287) + * Upgrade embedded wheels: setuptools to 75.1.0 from 74.1.2 + * no longer create () output in console during activation of a + virtualenv by .bat file. (#2728) + +------------------------------------------------------------------- Old: ---- virtualenv-20.26.3.tar.gz New: ---- virtualenv-20.26.6.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ python-virtualenv.spec ++++++ --- /var/tmp/diff_new_pack.5ES3LP/_old 2024-10-25 19:19:31.142317013 +0200 +++ /var/tmp/diff_new_pack.5ES3LP/_new 2024-10-25 19:19:31.142317013 +0200 @@ -27,7 +27,7 @@ %{?sle15_python_module_pythons} Name: python-virtualenv%{psuffix} -Version: 20.26.3 +Version: 20.26.6 Release: 0 Summary: Virtual Python Environment builder License: MIT ++++++ virtualenv-20.26.3.tar.gz -> virtualenv-20.26.6.tar.gz ++++++ /work/SRC/openSUSE:Factory/python-virtualenv/virtualenv-20.26.3.tar.gz /work/SRC/openSUSE:Factory/.python-virtualenv.new.2020/virtualenv-20.26.6.tar.gz differ: char 19, line 1