Script 'mail_helper' called by obssrc
Hello community,

here is the log from the commit of package texlive-cjk-latex-extras for 
openSUSE:Factory checked in at 2022-10-28 19:29:59
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/texlive-cjk-latex-extras (Old)
 and      /work/SRC/openSUSE:Factory/.texlive-cjk-latex-extras.new.2275 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "texlive-cjk-latex-extras"

Fri Oct 28 19:29:59 2022 rev:19 rq:1031544 version:20070515

Changes:
--------
--- 
/work/SRC/openSUSE:Factory/texlive-cjk-latex-extras/texlive-cjk-latex-extras.changes
        2018-10-15 10:49:34.150997407 +0200
+++ 
/work/SRC/openSUSE:Factory/.texlive-cjk-latex-extras.new.2275/texlive-cjk-latex-extras.changes
      2022-10-28 19:30:26.738906738 +0200
@@ -1,0 +2,6 @@
+Wed Oct 19 06:41:44 UTC 2022 - Cliff Zhao <qz...@suse.com>
+
+- Add texlive-cjk-latex-extras-bsc1159111-avoid-usage-safe-rm.patch
+  replace safe-rm to avoid security risks(bsc#1159111).
+
+-------------------------------------------------------------------

New:
----
  texlive-cjk-latex-extras-bsc1159111-avoid-usage-safe-rm.patch

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ texlive-cjk-latex-extras.spec ++++++
--- /var/tmp/diff_new_pack.cw4t1b/_old  2022-10-28 19:30:27.274909426 +0200
+++ /var/tmp/diff_new_pack.cw4t1b/_new  2022-10-28 19:30:27.278909446 +0200
@@ -1,7 +1,7 @@
 #
 # spec file for package texlive-cjk-latex-extras
 #
-# Copyright (c) 2018 SUSE LINUX GmbH, Nuernberg, Germany.
+# Copyright (c) 2022 SUSE LLC
 #
 # All modifications and additions to the file contributed by third parties
 # remain the property of their copyright owners, unless otherwise agreed
@@ -22,7 +22,10 @@
 %if 0%{?suse_version} < 1300
 BuildRequires:  texlive-bin
 %endif
-PreReq:         /bin/mkdir /bin/rm /usr/bin/touch /usr/bin/updmap
+PreReq:         /bin/mkdir
+PreReq:         /bin/rm
+PreReq:         /usr/bin/touch
+PreReq:         /usr/bin/updmap
 Requires:       freetype-tools
 Requires:       texlive-cjk
 Requires:       texlive-latex
@@ -63,8 +66,10 @@
 Provides:       locale(texlive-cjk:ja;ko;zh)
 Version:        20070515
 Release:        0
-Url:            http://cjk.ffii.org/
+URL:            http://cjk.ffii.org/
 Source0:        texlive-cjk-latex-extras-%{version}.tar.bz2
+#PATCH-FIX-OPENSUSE 
texlive-cjk-latex-extras-bsc1159111-avoid-usage-safe-rm.patch bsc#1159111 
qz...@suse.com -- replace safe-rm to avoid security risks.
+Patch0:         texlive-cjk-latex-extras-bsc1159111-avoid-usage-safe-rm.patch
 BuildArch:      noarch
 BuildRoot:      %{_tmppath}/%{name}-%{version}-build
 Summary:        Extra fonts and scripts for CJK LaTeX
@@ -77,6 +82,7 @@
 
 %prep
 %setup0
+%patch0 -p1
 mv README.SuSE README.SUSE
 find . -name CVS -type d | xargs rm -rf
 

++++++ texlive-cjk-latex-extras-bsc1159111-avoid-usage-safe-rm.patch ++++++
diff -Nura texlive-cjk-latex-extras-20070515/cjk-latex-t1mapgen 
texlive-cjk-latex-extras-20070515_new/cjk-latex-t1mapgen
--- texlive-cjk-latex-extras-20070515/cjk-latex-t1mapgen        2005-02-28 
21:31:03.000000000 +0800
+++ texlive-cjk-latex-extras-20070515_new/cjk-latex-t1mapgen    2022-10-26 
14:15:30.064864270 +0800
@@ -45,4 +45,4 @@
 # Therefore, deleting /var/cache/fonts/pk/* makes sure that all available pfb
 # fonts are used:
 
-find /var/cache/fonts/pk/ -type f -print0 | xargs -r -l100 -0 -- 
/usr/bin/safe-rm
+find /var/cache/fonts/pk/ -type f -print0 | xargs -r -l100 -0 -- /usr/bin/rm

Reply via email to