diff --git a/eventlet-0.40.2.tar.gz b/eventlet-0.40.2.tar.gz deleted file mode 100644 index f7ac9d8..0000000 --- a/eventlet-0.40.2.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:42636c277f761d026905cd0ba0a11edec7600001be401d6ae7e9546559c8d8b0 -size 565548 diff --git a/eventlet-0.40.3.tar.gz b/eventlet-0.40.3.tar.gz new file mode 100644 index 0000000..07545c7 --- /dev/null +++ b/eventlet-0.40.3.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:290852db0065d78cec17a821b78c8a51cafb820a792796a354592ae4d5fceeb0 +size 565741 diff --git a/python-eventlet.changes b/python-eventlet.changes index 4886aba..49b6b3c 100644 --- a/python-eventlet.changes +++ b/python-eventlet.changes @@ -1,3 +1,10 @@ +------------------------------------------------------------------- +Mon Sep 1 06:01:39 UTC 2025 - John Paul Adrian Glaubitz + +- Update to 0.40.3 + * [SECURITY] Fix request smuggling vulnerability by discarding + trailers (#1062) (CVE-2025-58068, bsc#1248994) + ------------------------------------------------------------------- Fri Aug 1 08:17:27 UTC 2025 - John Paul Adrian Glaubitz diff --git a/python-eventlet.spec b/python-eventlet.spec index fe483a3..68ba197 100644 --- a/python-eventlet.spec +++ b/python-eventlet.spec @@ -18,7 +18,7 @@ %{?sle15_python_module_pythons} Name: python-eventlet -Version: 0.40.2 +Version: 0.40.3 Release: 0 Summary: Concurrent networking library for Python License: MIT