Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package libvpx for openSUSE:Factory checked in at 2023-10-10 20:52:03 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/libvpx (Old) and /work/SRC/openSUSE:Factory/.libvpx.new.28202 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "libvpx" Tue Oct 10 20:52:03 2023 rev:50 rq:1116504 version:1.13.1 Changes: -------- --- /work/SRC/openSUSE:Factory/libvpx/libvpx.changes 2023-09-29 21:12:59.228478544 +0200 +++ /work/SRC/openSUSE:Factory/.libvpx.new.28202/libvpx.changes 2023-10-10 20:52:07.972319575 +0200 @@ -1,0 +2,8 @@ +Sun Oct 1 07:24:46 UTC 2023 - Bjørn Lie <bjorn....@gmail.com> + +- Update to version 1.13.1: + + Bug fixes: Fix to a crash related to VP9 encoding. + https://crbug.com/1486441 (CVE-2023-5217) +- Drop CVE-2023-5217.patch: Fixed upstream. + +------------------------------------------------------------------- Old: ---- CVE-2023-5217.patch libvpx-1.13.0.obscpio New: ---- libvpx-1.13.1.obscpio ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ libvpx.spec ++++++ --- /var/tmp/diff_new_pack.exNgTh/_old 2023-10-10 20:52:09.752384082 +0200 +++ /var/tmp/diff_new_pack.exNgTh/_new 2023-10-10 20:52:09.756384227 +0200 @@ -18,7 +18,7 @@ %define sover 8 Name: libvpx -Version: 1.13.0 +Version: 1.13.1 Release: 0 Summary: VP8/VP9 codec library License: BSD-3-Clause AND GPL-2.0-or-later @@ -26,8 +26,6 @@ URL: https://www.webmproject.org/ Source0: %{name}-%{version}.tar.xz Source1000: baselibs.conf -# PATCH-FIX-UPSTREAM -Patch1: CVE-2023-5217.patch Patch2: libvpx-configure-add-arch.patch # only needed for test suite BuildRequires: gcc-c++ ++++++ _service ++++++ --- /var/tmp/diff_new_pack.exNgTh/_old 2023-10-10 20:52:09.788385387 +0200 +++ /var/tmp/diff_new_pack.exNgTh/_new 2023-10-10 20:52:09.792385532 +0200 @@ -4,7 +4,7 @@ <param name="scm">git</param> <param name="versionformat">@PARENT_TAG@</param> <param name="versionrewrite-pattern">v(.*)</param> - <param name="revision">v1.13.0</param> + <param name="revision">v1.13.1</param> </service> <service name="set_version" mode="manual"/> <service name="tar" mode="buildtime"/> ++++++ libvpx-1.13.0.obscpio -> libvpx-1.13.1.obscpio ++++++ /work/SRC/openSUSE:Factory/libvpx/libvpx-1.13.0.obscpio /work/SRC/openSUSE:Factory/.libvpx.new.28202/libvpx-1.13.1.obscpio differ: char 48, line 1 ++++++ libvpx.obsinfo ++++++ --- /var/tmp/diff_new_pack.exNgTh/_old 2023-10-10 20:52:09.840387271 +0200 +++ /var/tmp/diff_new_pack.exNgTh/_new 2023-10-10 20:52:09.844387416 +0200 @@ -1,5 +1,5 @@ name: libvpx -version: 1.13.0 -mtime: 1675820031 -commit: d6eb9696aa72473c1a11d34d928d35a3acc0c9a9 +version: 1.13.1 +mtime: 1696025174 +commit: 10b9492dcf05b652e2e4b370e205bd605d421972