From ec67df018ba4b264ebab9d3525d4f306e962735b0ccc94bbabf3a5143e73d2b4 Mon Sep 17 00:00:00 2001 From: Jan Engelhardt Date: Tue, 2 Jul 2024 17:54:57 +0000 Subject: [PATCH] [info=81825454db1cadf353114d970ca18474b2a0e5f748e1918a9890ea3e1f3571bd] OBS-URL: https://build.opensuse.org/package/show/network:utilities/yt-dlp?expand=0&rev=95 --- build.specials.obscpio | 3 +++ yt-dlp.changes | 8 +++----- 2 files changed, 6 insertions(+), 5 deletions(-) create mode 100644 build.specials.obscpio diff --git a/build.specials.obscpio b/build.specials.obscpio new file mode 100644 index 0000000..4edead8 --- /dev/null +++ b/build.specials.obscpio @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:135ab0dc0538868ab58d54b5ba4610d321922f88acf75b64a02abd9982fa3442 +size 256 diff --git a/yt-dlp.changes b/yt-dlp.changes index 54ce88c..58bb54a 100644 --- a/yt-dlp.changes +++ b/yt-dlp.changes @@ -2,11 +2,9 @@ Tue Jul 2 10:30:24 UTC 2024 - Michael Vetter - Update to release 2024.07.01: - * Security: [CVE-2024-38519] Properly sanitize file-extension - to prevent file system modification and RCE - Unsafe extensions are now blocked from being downloaded - * For details see: - https://github.com/yt-dlp/yt-dlp/releases/tag/2024.07.01 + * Properly sanitize file-extension to prevent file system + modification and RCE. Unsafe extensions are now blocked from + being downloaded. [CVE-2024-38519 boo#1227305] ------------------------------------------------------------------- Tue May 28 06:39:46 UTC 2024 - Jan Engelhardt