From 81825454db1cadf353114d970ca18474b2a0e5f748e1918a9890ea3e1f3571bd Mon Sep 17 00:00:00 2001 From: Jan Engelhardt Date: Tue, 2 Jul 2024 19:54:26 +0200 Subject: [PATCH] Add openSUSE bugzilla reference for CVE-2024-38519 --- yt-dlp.changes | 8 +++----- 1 file changed, 3 insertions(+), 5 deletions(-) diff --git a/yt-dlp.changes b/yt-dlp.changes index 54ce88c..58bb54a 100644 --- a/yt-dlp.changes +++ b/yt-dlp.changes @@ -2,11 +2,9 @@ Tue Jul 2 10:30:24 UTC 2024 - Michael Vetter - Update to release 2024.07.01: - * Security: [CVE-2024-38519] Properly sanitize file-extension - to prevent file system modification and RCE - Unsafe extensions are now blocked from being downloaded - * For details see: - https://github.com/yt-dlp/yt-dlp/releases/tag/2024.07.01 + * Properly sanitize file-extension to prevent file system + modification and RCE. Unsafe extensions are now blocked from + being downloaded. [CVE-2024-38519 boo#1227305] ------------------------------------------------------------------- Tue May 28 06:39:46 UTC 2024 - Jan Engelhardt