Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package python39 for openSUSE:Factory checked in at 2023-09-10 13:09:09 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/python39 (Old) and /work/SRC/openSUSE:Factory/.python39.new.1766 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python39" Sun Sep 10 13:09:09 2023 rev:50 rq:1109203 version:3.9.18 Changes: -------- --- /work/SRC/openSUSE:Factory/python39/python39.changes 2023-08-06 16:29:16.479587372 +0200 +++ /work/SRC/openSUSE:Factory/.python39.new.1766/python39.changes 2023-09-10 13:09:10.288284783 +0200 @@ -1,0 +2,17 @@ +Wed Sep 6 06:38:27 UTC 2023 - Daniel Garcia <daniel.gar...@suse.com> + +- Update to 3.9.18 (bsc#1214692): + - gh-108310: Fixed an issue where instances of ssl.SSLSocket were + vulnerable to a bypass of the TLS handshake and included + protections (like certificate verification) and treating sent + unencrypted data as if it were post-handshake TLS encrypted data. + Security issue reported as CVE-2023-40217 by Aapo Oksman. Patch by + Gregory P. Smith. + - gh-107845: tarfile.data_filter() now takes the location of + symlinks into account when determining their target, so it will no + longer reject some valid tarballs with + LinkOutsideDestinationError. + - gh-107565: Update multissltests and GitHub CI workflows to use + OpenSSL 1.1.1v, 3.0.10, and 3.1.2. + +------------------------------------------------------------------- Old: ---- Python-3.9.17.tar.xz Python-3.9.17.tar.xz.asc New: ---- Python-3.9.18.tar.xz Python-3.9.18.tar.xz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ python39.spec ++++++ --- /var/tmp/diff_new_pack.08AMWM/_old 2023-09-10 13:09:15.764480432 +0200 +++ /var/tmp/diff_new_pack.08AMWM/_new 2023-09-10 13:09:15.780481004 +0200 @@ -93,7 +93,7 @@ %define dynlib() %{sitedir}/lib-dynload/%{1}.cpython-%{abi_tag}-%{archname}-%{_os}%{?_gnu}%{?armsuffix}.so %bcond_without profileopt Name: %{python_pkg_name}%{psuffix} -Version: 3.9.17 +Version: 3.9.18 Release: 0 Summary: Python 3 Interpreter License: Python-2.0 ++++++ Python-3.9.17.tar.xz -> Python-3.9.18.tar.xz ++++++ /work/SRC/openSUSE:Factory/python39/Python-3.9.17.tar.xz /work/SRC/openSUSE:Factory/.python39.new.1766/Python-3.9.18.tar.xz differ: char 27, line 1