Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package python-GitPython for openSUSE:Factory checked in at 2026-10-02 23:01:41 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/python-GitPython (Old) and /work/SRC/openSUSE:Factory/.python-GitPython.new.1631729 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python-GitPython" Fri Oct 2 23:01:41 2026 rev:43 rq:1381869 version:3.2.0 Changes: -------- --- /work/SRC/openSUSE:Factory/python-GitPython/python-GitPython.changes 2026-08-30 19:06:44.850981249 +0200 +++ /work/SRC/openSUSE:Factory/.python-GitPython.new.1631729/python-GitPython.changes 2026-10-02 23:02:11.130384116 +0200 @@ -1,0 +2,64 @@ +Wed Sep 30 12:49:13 UTC 2026 - Nico Krapp <[email protected]> + +- Update to version 3.2.0: + * prepare for next release, v3.2 + * fix(remote): validate protocols in rendered transport arguments + * fix(config): bound option-line parsing + * ci: remove `codespell` checks and configuration + * fix(index): confine staging reads to worktree files + * fix(tree): validate entry names and record boundaries + * fix(index): validate paths at native index boundaries + * fix(repo): validate rendered archive remote options + * fix(cmd): reject the alternate `ext://` helper selector + * fix(refs): bound symbolic reference resolution and updates + * fix(repo): delegate revision message searches to Git + * refactor(db): deprecate the pure-Python `GitDB` backend + * fix(commit): bound co_authors trailer parsing + * fix: validate size lookups and preserve binary SHAs (#2254) + * fix(repo): preserve literal separate Git directory paths + * fix: bound actor and date parsing + * build(deps): bump astral-sh/setup-uv from 10.1.0 to 10.2.0 + * fix: complete safety checks in Git command wrappers + * fix: skip a UTF-8 BOM when reading config files + * bump minor version to indicate drop of python 3.7 support + * feat(submodule): option to update without fetching + * fix(remote): reject option-shaped update targets + * fix(index): preserve path operands when moving and checking ignores + * fix(refs): keep branch and tag operands out of option parsing + * fix(remote): reject option-shaped pull operands + * Drop Python 3.7 + * fix: strip inline config comments the way git does + * Move [doc] extra to a PEP 735 dependency group; add uv-sync CI check + * Move project metadata to pyproject.toml + * fix: match Git config names case-insensitively (#2240) + * fix: reject comments after implicit boolean config keys + * fix: preserve implicit boolean config keys (#2237) + * Correct public API typing and add portable runtime checks + * Fix timeout child-process lookup on non-GNU systems + * fix: validate checkout positional reference options + * test: Pass strings to readlink for Windows Python 3.7 + * fix: Clone into dangling submodule metadata symlink targets on Windows + * test: Disable automatic maintenance in remote timeout tests + * test: Simplify submodule path simulation and verify metadata removal + * fix: Preserve submodule paths and release checkout handles on Windows + * fix: Validate submodule checkout and metadata paths before mutation + * fix: Reject submodule move destinations through intermediate symlinks + * Clarify detached HEAD access and attach writable test fixtures (#2230) + * Read git's yes/no and on/off booleans in get_value + +------------------------------------------------------------------- +Wed Sep 30 12:39:29 UTC 2026 - Nico Krapp <[email protected]> + +- Update to version 3.1.62 (fixes CVE-2026-100689 (bsc#1282983)): + * prepare new release + * get better commit messages from agents + * test: cover subdirectory discovery and pathspec commands in bare-repo worktrees (#2223) + * fix: parse joined config values as a whole + * fix: ignore continuation markers in config comments + * fix: join backslash line continuations when reading config values + * build(deps): bump https://github.com/astral-sh/ruff-pre-commit + * Reject submodule checkout paths outside the repository + * ci: restore Cygwin virtual environments on Python 3.9 + * fix: keep bare-repository worktrees non-bare (#2223) + +------------------------------------------------------------------- Old: ---- GitPython-3.1.61.tar.gz New: ---- GitPython-3.2.0.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ python-GitPython.spec ++++++ --- /var/tmp/diff_new_pack.w5djQz/_old 2026-10-02 23:02:12.280432251 +0200 +++ /var/tmp/diff_new_pack.w5djQz/_new 2026-10-02 23:02:12.286432502 +0200 @@ -18,7 +18,7 @@ %{?sle15_python_module_pythons} Name: python-GitPython -Version: 3.1.61 +Version: 3.2.0 Release: 0 Summary: Python Git Library License: BSD-3-Clause ++++++ GitPython-3.1.61.tar.gz -> GitPython-3.2.0.tar.gz ++++++ /work/SRC/openSUSE:Factory/python-GitPython/GitPython-3.1.61.tar.gz /work/SRC/openSUSE:Factory/.python-GitPython.new.1631729/GitPython-3.2.0.tar.gz differ: char 12, line 1 ++++++ _service ++++++ --- /var/tmp/diff_new_pack.w5djQz/_old 2026-10-02 23:02:12.380436437 +0200 +++ /var/tmp/diff_new_pack.w5djQz/_new 2026-10-02 23:02:12.386436688 +0200 @@ -2,7 +2,7 @@ <service name="tar_scm" mode="manual"> <param name="url">https://github.com/gitpython-developers/GitPython</param> <param name="scm">git</param> - <param name="revision">3.1.61</param> + <param name="revision">3.2.0</param> <param name="versionformat">@PARENT_TAG@</param> <param name="package-meta">yes</param> <param name="changesgenerate">enable</param> ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.w5djQz/_old 2026-10-02 23:02:12.424438278 +0200 +++ /var/tmp/diff_new_pack.w5djQz/_new 2026-10-02 23:02:12.430438529 +0200 @@ -1,6 +1,6 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/gitpython-developers/GitPython</param> - <param name="changesrevision">5346d1b587a790bac4dc4f100a28fae9db0fd7c8</param></service></servicedata> + <param name="changesrevision">6a7180a9dfcb276755a8af99dd78155f775a6b14</param></service></servicedata> (No newline at EOF)
