Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package kubevirt for openSUSE:Factory checked in at 2023-03-17 17:04:32 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/kubevirt (Old) and /work/SRC/openSUSE:Factory/.kubevirt.new.31432 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "kubevirt" Fri Mar 17 17:04:32 2023 rev:54 rq:1072517 version:0.59.0 Changes: -------- --- /work/SRC/openSUSE:Factory/kubevirt/kubevirt.changes 2023-03-02 23:04:24.044122861 +0100 +++ /work/SRC/openSUSE:Factory/.kubevirt.new.31432/kubevirt.changes 2023-03-17 17:04:51.621869367 +0100 @@ -1,0 +2,6 @@ +Thu Mar 16 09:13:41 UTC 2023 - Vasily Ulyanov <vasily.ulya...@suse.com> + +- Limit operator secrets permission (CVE-2023-26484, bsc#1209359) + 0001-Vulnerability-fix-limit-operator-secrets-permission.patch + +------------------------------------------------------------------- New: ---- 0001-Vulnerability-fix-limit-operator-secrets-permission.patch ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ kubevirt.spec ++++++ --- /var/tmp/diff_new_pack.dhFmYD/_old 2023-03-17 17:04:52.697875038 +0100 +++ /var/tmp/diff_new_pack.dhFmYD/_new 2023-03-17 17:04:52.701875059 +0100 @@ -28,12 +28,13 @@ Source2: kubevirt_containers_meta.service Source3: %{url}/releases/download/v%{version}/disks-images-provider.yaml Source100: %{name}-rpmlintrc +Patch0: 0001-Vulnerability-fix-limit-operator-secrets-permission.patch BuildRequires: glibc-devel-static BuildRequires: golang-packaging BuildRequires: pkgconfig BuildRequires: rsync BuildRequires: sed -BuildRequires: golang(API) = 1.19 +BuildRequires: golang(API) >= 1.19 BuildRequires: pkgconfig(libvirt) ExclusiveArch: x86_64 aarch64 ++++++ 0001-Vulnerability-fix-limit-operator-secrets-permission.patch ++++++ ++++ 806 lines (skipped)