diff --git a/filelock-3.20.2.tar.gz b/filelock-3.20.2.tar.gz deleted file mode 100644 index 352dbb0..0000000 --- a/filelock-3.20.2.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:a2241ff4ddde2a7cebddf78e39832509cb045d18ec1a09d7248d6bfc6bfbbe64 -size 19510 diff --git a/filelock-3.20.3.tar.gz b/filelock-3.20.3.tar.gz new file mode 100644 index 0000000..244fb1c --- /dev/null +++ b/filelock-3.20.3.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:18c57ee915c7ec61cff0ecf7f0f869936c7c30191bb0cf406f1341778d0834e1 +size 19485 diff --git a/python-filelock.changes b/python-filelock.changes index dbcaf67..6824d18 100644 --- a/python-filelock.changes +++ b/python-filelock.changes @@ -1,3 +1,9 @@ +------------------------------------------------------------------- +Mon Jan 12 11:19:38 UTC 2026 - Nico Krapp + +- Update to 3.20.3 (fixes CVE-2026-22701, bsc#1256457) + * Fix TOCTOU symlink vulnerability in SoftFileLock by @gaborbernat in #465 + ------------------------------------------------------------------- Mon Jan 5 10:10:09 UTC 2026 - Nico Krapp diff --git a/python-filelock.spec b/python-filelock.spec index 429dca2..7b97220 100644 --- a/python-filelock.spec +++ b/python-filelock.spec @@ -27,7 +27,7 @@ %endif %{?sle15_python_module_pythons} Name: python-filelock%{?pkg_suffix} -Version: 3.20.2 +Version: 3.20.3 Release: 0 Summary: Platform Independent File Lock in Python License: Unlicense