1
0

Compare commits

..

1 Commits

Author SHA256 Message Date
AutoGits PR Review Bot
40c4937716 auto-created for bpftop
This commit was autocreated by AutoGits PR Review Bot

removing PRs:
 PR: pool/bpftop!1
2025-09-06 01:16:54 +02:00
230 changed files with 366 additions and 33364 deletions

View File

@@ -1,35 +1,37 @@
# Use this as .gitea/workflows/patchinfo_numberator.yaml in all products/* repos
name: Patchinfo incident numbering
on:
push:
workflow_dispatch:
env:
REPO_PATH: /workspace/${{ gitea.repository }}
REPO_URL: https://gitea-actions-autobuild:${{ secrets.REPO_WRITE }}@$RUNNER_GITEA_DOMAIN/${{ gitea.repository }}.git
name: Patchinfo ID numberator
run-name: ${{ gitea.actor }} is setting patchinfo numbers
on: [push]
jobs:
use-go-action:
runs-on: tumbleweed_autobuild
runs-on: tumbleweed
steps:
# Install packages if not provided by image
- run: |
rpm -q go && exit 0
zypper ref
zypper in -y go
# Generic action from GitHub to clone the product git repo
- name: Checkout product
run: |
test -n "${{ env.REPO_PATH }}" && rm -rfv "${{ env.REPO_PATH }}"/*
git config --global --add safe.directory ${{ env.REPO_PATH }}
git clone ${{ env.REPO_URL }} ${{ env.REPO_PATH }}
uses: https://gitea-actions-autobuild:${{ secrets.REPO_READ }}@src.opensuse.org/actions/github-actions-checkout@v4
with:
token: ${{ secrets.REPO_WRITE }}
repo-sha256: true
- name: Update all new _patchinfo files
uses: https://src.opensuse.org/actions/patchinfo-numbering-action@v0
with:
prefix: packagehub-
- name: Commit changes
uses: https://src.opensuse.org/actions/stefanzweifel-git-auto-commit-action@v5
uses: https://gitea-actions-autobuild:${{ secrets.REPO_READ }}@src.opensuse.org/actions/patchinfo-numbering-action@v0
- name: Get last commit author
id: last-commit
run: |
echo "author=$(git log -1 --pretty='%an <%ae>')" >> $GITHUB_OUTPUT
- name: Commit changes back
uses: https://gitea-actions-autobuild:${{ secrets.REPO_READ }}@src.opensuse.org/actions/stefanzweifel-git-auto-commit-action@v5
with:
commit_user_name: gitea-actions-autobuild
commit_author: Patchinfo incident numbering <gitea-actions-autobuild@noreply.src.opensuse.org>
commit_message: "Update patchinfo incident numbers [skip actions]"
commit_user_email: autobuild+gitea@opensuse.org
commit_author: ${{ steps.last-commit.outputs.author }}
commit_message: "Update incident numbers [skip actions]"
commit_options: '--no-edit'
skip_fetch: true

240
.gitmodules vendored
View File

@@ -290,10 +290,6 @@
path = PrusaSlicer
url = ../../pool/PrusaSlicer
branch = leap-16.0
[submodule "dehydrated"]
path = dehydrated
url = ../../pool/dehydrated
branch = leap-16.0
[submodule "QR-Code-generator"]
path = QR-Code-generator
url = ../../pool/QR-Code-generator
@@ -10194,6 +10190,10 @@
path = memleax
url = ../../pool/memleax
branch = leap-16.0
[submodule "memtest86+"]
path = memtest86+
url = ../../pool/memtest86_
branch = leap-16.0
[submodule "menu-cache"]
path = menu-cache
url = ../../pool/menu-cache
@@ -11762,6 +11762,10 @@
path = openQA
url = ../../pool/openqa
branch = leap-16.0
[submodule "openQA-devel-container"]
path = openQA-devel-container
url = ../../pool/openqa-devel-container
branch = leap-16.0
[submodule "openSUSE-signkey-cert"]
path = openSUSE-signkey-cert
url = ../../pool/openSUSE-signkey-cert
@@ -11882,6 +11886,10 @@
path = openssl_tpm2_engine
url = ../../pool/openssl_tpm2_engine
branch = leap-16.0
[submodule "opensuse-welcome-launcher"]
path = opensuse-welcome-launcher
url = ../../pool/opensuse-welcome-launcher
branch = leap-16.0
[submodule "opentimelineio"]
path = opentimelineio
url = ../../pool/opentimelineio
@@ -17354,10 +17362,6 @@
path = rasqal
url = ../../pool/rasqal
branch = leap-16.0
[submodule "rawtherapee"]
path = rawtherapee
url = ../../pool/rawtherapee
branch = leap-16.0
[submodule "raw-thumbnailer"]
path = raw-thumbnailer
url = ../../pool/raw-thumbnailer
@@ -17570,6 +17574,10 @@
path = rlwrap
url = ../../pool/rlwrap
branch = leap-16.0
[submodule "rmt-server"]
path = rmt-server
url = ../../pool/rmt-server
branch = leap-16.0
[submodule "rmw"]
path = rmw
url = ../../pool/rmw
@@ -26026,219 +26034,3 @@
path = python-pygraphviz
url = ../../pool/python-pygraphviz
branch = leap-16.0
[submodule "obs-service-cargo"]
path = obs-service-cargo
url = ../../pool/obs-service-cargo
branch = leap-16.0
[submodule "obs-service-extract_file"]
path = obs-service-extract_file
url = ../../pool/obs-service-extract_file
branch = leap-16.0
[submodule "obs-service-update_changelog"]
path = obs-service-update_changelog
url = ../../pool/obs-service-update_changelog
branch = leap-16.0
[submodule "obs-service-refresh_patches"]
path = obs-service-refresh_patches
url = ../../pool/obs-service-refresh_patches
branch = leap-16.0
[submodule "cargo-vendor-filterer"]
path = cargo-vendor-filterer
url = ../../pool/cargo-vendor-filterer
branch = leap-16.0
[submodule "ghc-file-io"]
path = ghc-file-io
url = ../../pool/ghc-file-io
branch = leap-16.0
[submodule "perl-Perl-Critic-TooMuchCode"]
path = perl-Perl-Critic-TooMuchCode
url = ../../pool/perl-Perl-Critic-TooMuchCode
branch = leap-16.0
[submodule "nemo-extensions"]
path = nemo-extensions
url = ../../pool/nemo-extensions
branch = leap-16.0
[submodule "nextcloud-desktop"]
path = nextcloud-desktop
url = ../../pool/nextcloud-desktop
branch = leap-16.0
[submodule "hplip"]
path = hplip
url = ../../pool/hplip
branch = leap-16.0
[submodule "libsigrok"]
path = libsigrok
url = ../../pool/libsigrok
branch = leap-16.0
[submodule "collectd"]
path = collectd
url = ../../pool/collectd
branch = leap-16.0
[submodule "obs-git-init"]
path = obs-git-init
url = ../../pool/obs-git-init
branch = leap-16.0
[submodule "python-WTForms"]
path = python-WTForms
url = ../../pool/python-WTForms
branch = leap-16.0
[submodule "python-Flask-WTF"]
path = python-Flask-WTF
url = ../../pool/python-Flask-WTF
branch = leap-16.0
[submodule "python-Flask-RESTful"]
path = python-Flask-RESTful
url = ../../pool/python-Flask-RESTful
branch = leap-16.0
[submodule "python-Flask-HTTPAuth"]
path = python-Flask-HTTPAuth
url = ../../pool/python-Flask-HTTPAuth
branch = leap-16.0
[submodule "python-Flask-Babel"]
path = python-Flask-Babel
url = ../../pool/python-Flask-Babel
branch = leap-16.0
[submodule "python-aniso8601"]
path = python-aniso8601
url = ../../pool/python-aniso8601
branch = leap-16.0
[submodule "gnuhealth-thalamus"]
path = gnuhealth-thalamus
url = ../../pool/gnuhealth-thalamus
branch = leap-16.0
[submodule "perl-MCP"]
path = perl-MCP
url = ../../pool/perl-MCP
branch = leap-16.0
[submodule "fprintd"]
path = fprintd
url = ../../pool/fprintd
branch = leap-16.0
[submodule "python-acme"]
path = python-acme
url = ../../pool/python-acme
branch = leap-16.0
[submodule "python-certbot"]
path = python-certbot
url = ../../pool/python-certbot
branch = leap-16.0
[submodule "python-certbot-nginx"]
path = python-certbot-nginx
url = ../../pool/python-certbot-nginx
branch = leap-16.0
[submodule "python-ConfigArgParse"]
path = python-ConfigArgParse
url = ../../pool/python-ConfigArgParse
branch = leap-16.0
[submodule "python-josepy"]
path = python-josepy
url = ../../pool/python-josepy
branch = leap-16.0
[submodule "python-pyRFC3339"]
path = python-pyRFC3339
url = ../../pool/python-pyRFC3339
branch = leap-16.0
[submodule "certbot-systemd-timer"]
path = certbot-systemd-timer
url = ../../pool/certbot-systemd-timer
branch = leap-16.0
[submodule "python-augeas"]
path = python-augeas
url = ../../pool/python-augeas
branch = leap-16.0
[submodule "python-bson"]
path = python-bson
url = ../../pool/python-bson
branch = leap-16.0
[submodule "python-certbot-apache"]
path = python-certbot-apache
url = ../../pool/python-certbot-apache
branch = leap-16.0
[submodule "python-certbot-dns-cloudflare"]
path = python-certbot-dns-cloudflare
url = ../../pool/python-certbot-dns-cloudflare
branch = leap-16.0
[submodule "python-certbot-dns-digitalocean"]
path = python-certbot-dns-digitalocean
url = ../../pool/python-certbot-dns-digitalocean
branch = leap-16.0
[submodule "python-certbot-dns-dnsimple"]
path = python-certbot-dns-dnsimple
url = ../../pool/python-certbot-dns-dnsimple
branch = leap-16.0
[submodule "python-certbot-dns-dnsmadeeasy"]
path = python-certbot-dns-dnsmadeeasy
url = ../../pool/python-certbot-dns-dnsmadeeasy
branch = leap-16.0
[submodule "python-certbot-dns-linode"]
path = python-certbot-dns-linode
url = ../../pool/python-certbot-dns-linode
branch = leap-16.0
[submodule "python-certbot-dns-luadns"]
path = python-certbot-dns-luadns
url = ../../pool/python-certbot-dns-luadns
branch = leap-16.0
[submodule "python-certbot-dns-nsone"]
path = python-certbot-dns-nsone
url = ../../pool/python-certbot-dns-nsone
branch = leap-16.0
[submodule "python-certbot-dns-ovh"]
path = python-certbot-dns-ovh
url = ../../pool/python-certbot-dns-ovh
branch = leap-16.0
[submodule "python-certbot-dns-rfc2136"]
path = python-certbot-dns-rfc2136
url = ../../pool/python-certbot-dns-rfc2136
branch = leap-16.0
[submodule "python-certbot-dns-route53"]
path = python-certbot-dns-route53
url = ../../pool/python-certbot-dns-route53
branch = leap-16.0
[submodule "python-cloudflare"]
path = python-cloudflare
url = ../../pool/python-cloudflare
branch = leap-16.0
[submodule "python-digitalocean"]
path = python-digitalocean
url = ../../pool/python-digitalocean
branch = leap-16.0
[submodule "python-dns-lexicon"]
path = python-dns-lexicon
url = ../../pool/python-dns-lexicon
branch = leap-16.0
[submodule "python-jsonlines"]
path = python-jsonlines
url = ../../pool/python-jsonlines
branch = leap-16.0
[submodule "python-jsonpickle"]
path = python-jsonpickle
url = ../../pool/python-jsonpickle
branch = leap-16.0
[submodule "python-localzone"]
path = python-localzone
url = ../../pool/python-localzone
branch = leap-16.0
[submodule "python-pytest-httpx"]
path = python-pytest-httpx
url = ../../pool/python-pytest-httpx
branch = leap-16.0
[submodule "python-requests-file"]
path = python-requests-file
url = ../../pool/python-requests-file
branch = leap-16.0
[submodule "python-softlayer"]
path = python-softlayer
url = ../../pool/python-softlayer
branch = leap-16.0
[submodule "python-softlayer-zeep"]
path = python-softlayer-zeep
url = ../../pool/python-softlayer-zeep
branch = leap-16.0
[submodule "python-tldextract"]
path = python-tldextract
url = ../../pool/python-tldextract
branch = leap-16.0
[submodule "openQA-devel-container"]
path = openQA-devel-container
url = ../../pool/openQA-devel-container
branch = leap-16.0

View File

@@ -1,175 +1,3 @@
-------------------------------------------------------------------
Mon Jan 5 10:38:32 UTC 2026 - Wolfgang Engel <wolfgang.engel@suse.com>
- Backports.productcompose:
+ add to backports_unneeded, remove xen related packages (bsc#1253226)
xen-tools-xendomains-wait-disk
-------------------------------------------------------------------
Fri Oct 10 07:19:41 UTC 2025 - Wolfgang Engel <wolfgang.engel@suse.com>
- Backports.productcompose:
+ add to backports_unneeded, not needed
micro patterns that are coming from SLES
patterns-micro-alt_onlyDVD
patterns-micro-cloud
patterns-micro-defaults
patterns-micro-fips
patterns-micro-hardware
patterns-micro-ima-evm
patterns-micro-kvm_host
patterns-micro-onlyDVD
patterns-micro-ra-agent
patterns-micro-ra-verifier
patterns-micro-salt_minion
patterns-micro-sssd-ldap
-------------------------------------------------------------------
Mon Oct 6 14:49:27 UTC 2025 - Wolfgang Engel <wolfgang.engel@suse.com>
- Backports.productcompose:
+ add to backports_unneeded, remove more uninstallables
aws-cli
NetworkManager-branding-upstream
sdbootutil-tukit
toolbox-branding-SLE-16.0
-------------------------------------------------------------------
Mon Oct 6 13:24:32 UTC 2025 - Wolfgang Engel <wolfgang.engel@suse.com>
- Backports.productcompose:
+ add to backports_unneeded, cleanup more unneeded 32bit packages
at-spi2-core-devel-32bit
libcups2-32bit
libcurl-devel-32bit
libdns_sd-32bit
libpcap-devel-32bit
libraptor2-0-32bit
libtss2-fapi1-32bit
-------------------------------------------------------------------
Thu Oct 2 15:07:44 UTC 2025 - Wolfgang Engel <wolfgang.engel@suse.com>
- Backports.productcompose:
+ add to backports_unneeded since not needed patterns
patterns-base-transactional_base
patterns-micro-elemental_client
patterns-sap-bone
-------------------------------------------------------------------
Fri Sep 26 16:48:57 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- Backports.productcompose
+ sync with current state of SLES-16.0 (GM)
-------------------------------------------------------------------
Wed Sep 24 10:49:29 UTC 2025 - Wolfgang Engel <wolfgang.engel@suse.com>
- Backports.productcompose:
+ add to backports_unneeded since busybox modules conflict with
SLES system packages
busybox-adduser
busybox-attr
busybox-bc
busybox-bind-utils
busybox-bzip2
busybox-coreutils
busybox-cpio
busybox-diffutils
busybox-dos2unix
busybox-ed
busybox-findutils
busybox-gawk
busybox-grep
busybox-gzip
busybox-hexedit
busybox-hostname
busybox-iproute2
busybox-iputils
busybox-kbd
busybox-kmod
busybox-less
busybox-links
busybox-man
busybox-misc
busybox-ncurses-utils
busybox-net-tools
busybox-netcat
busybox-patch
busybox-policycoreutils
busybox-procps
busybox-psmisc
busybox-sed
busybox-selinux-tools
busybox-sendmail
busybox-sh
busybox-sha3sum
busybox-sharutils
busybox-syslogd
busybox-sysvinit-tools
busybox-tar
busybox-telnet
busybox-testsuite
busybox-tftp
busybox-time
busybox-traceroute
busybox-tunctl
busybox-udhcpc
busybox-unzip
busybox-util-linux
busybox-vi
busybox-vlan
busybox-wget
busybox-which
busybox-whois
busybox-xz
+ add to backports_unneeded since kernels are not allowed (bsc#1250340)
kernel-azure-livepatch-devel
kernel-default-livepatch-devel
kernel-livepatch-6_12_0-160000_4-default
kernel-livepatch-6_12_0-160000_5-default
kernel-livepatch-6_12_0-160000_4-rt
kernel-livepatch-6_12_0-160000_5-rt
kernel-rt-livepatch
kernel-rt-livepatch-devel
patterns-base-kernel_livepatching
+ add to backports_unneeded
chrony-pool-openSUSE (conflicts with chrony-pool-suse from SLES)
connman-nmcompat (conflicts with NetworkManager from SLES)
debuginfod-dummy-client (conflicts with debuginfod-client from SLES)
ecryptfs-utils (needs ecryptfs.ko, not provided)
elemental (requires systemd-presets-branding-Elemental, not provided)
geoipupdate-legacy (requires geolite2legacy, not provided)
gio-branding-upstream (conflicts with gio-branding from SLES)
libdebuginfod1-dummy (conflicts with libdebuginfod from SLES from SLES)
libdebuginfod-dummy-devel (requires libdebuginfod1-dummy, not provided)
MozillaFirefox-branding-upstream (conflicts with MozillaFirefox-branding-SLE from SLES)
ntpd-rs (conflicts with chrony from SLES)
ntpsec (conflicts with chrony from SLES)
ntpsec-utils (needs ntpsec)
plymouth-branding-upstream (conflicts with plymouth-branding-SLE from SLES)
systemd-default-settings-branding-openSUSE (conflicts with systemd-default-settings-branding-SLE from SLES)
systemd-default-settings-branding-SLE-Micro (conflicts with systemd-default-settings-branding-SLE from SLES)
systemd-default-settings-branding-upstream (conflicts with systemd-default-settings-branding-SLE from SLES)
systemd-presets-branding-ALP-transactional (conflicts with systemd-presets-branding-SLE from SLES)
systemd-presets-branding-Elemental (conflicts with systemd-presets-branding-SLE from SLES)
yum-utils (conflicts with zypper-needs-restarting from SLES)
+ add to backports_unneeded since 32bit packages are not needed
dbus-1-devel-32bit
libatk-bridge-2_0-0-32bit
libatspi0-32bit
libavahi-client3-32bit
libcurl4-32bit
libdbus-glib-1-2-32bit
libdc1394-26-32bit
libgusb2-32bit
libmanette-0_2-0-32bit
libpcap1-32bit
libpolkit-agent-1-0-32bit
libpq5-32bit
libusb-1_0-devel-32bit
libwacom9-32bit
-------------------------------------------------------------------
Tue Sep 2 16:40:20 UTC 2025 - Nathan Cutler <ncutler@suse.com>
@@ -258,7 +86,7 @@ Thu Aug 21 12:23:55 UTC 2025 - Nathan Cutler <ncutler@suse.com>
Wed Aug 20 12:02:06 UTC 2025 - Adrian Schröter <adrian@suse.de>
- Backports.productcompose:
+ prepare some settings for maintenance.
+ prepare some settings for maintenance.
but not enabling it yet
-------------------------------------------------------------------
@@ -325,7 +153,7 @@ Mon Jul 28 18:16:57 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- Backports.productcompose:
+ add to backports_unneeded (bsc#1247203)
ALP
ALP-dummy-release
ALP-dummy-release
-------------------------------------------------------------------
Sun Jul 27 14:35:46 UTC 2025 - Nathan Cutler <ncutler@suse.com>
@@ -346,7 +174,7 @@ Fri Jul 4 08:06:42 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- Backports.productcompose:
+ add a bunch of "-mini" packages to the exclude list. These
packages are only needed for building.
packages are only needed for building.
+ sync with current state of SLES-16.0 (pre-RC2)
-------------------------------------------------------------------
@@ -362,7 +190,7 @@ Fri May 30 08:11:48 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- Backports.productcompose:
+ fix the build again by excluding the following packages:
libopenssl3-32bit
libopenssl3-32bit
libopenssl-3-devel-32bit
libopenssl-3-fips-provider-32bit
@@ -370,29 +198,29 @@ Fri May 30 08:11:48 UTC 2025 - Nathan Cutler <ncutler@suse.com>
Thu May 29 12:55:41 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- Backports.productcompose:
+ sync with current state of SLES-16.0
+ sync with current state of SLES-16.0
-------------------------------------------------------------------
Wed May 7 08:21:19 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- rename default.productcompose to Backports.productcompose
(we can do this because we are not using pkglistgen, which
hardcodes "default.productcompose")
hardcodes "default.productcompose")
-------------------------------------------------------------------
Tue May 6 14:38:05 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- default.productcompose:
+ fix the x86_64 build again by adding a large number of foo-32bit
packages to backports_unneeded_x86_64
packages to backports_unneeded_x86_64
-------------------------------------------------------------------
Wed Apr 30 09:19:49 UTC 2025 - Nathan Cutler <ncutler@suse.com>
- supportstatus.txt
+ drop this file because it is needed only when using pkglistgen
+ drop this file because it is needed only when using pkglistgen
- unneeded.yml
+ drop this file because it is needed only when using pkglistgen
+ drop this file because it is needed only when using pkglistgen
-------------------------------------------------------------------
Thu Apr 24 10:33:13 UTC 2025 - Nathan Cutler <ncutler@suse.com>

View File

@@ -14,7 +14,7 @@ scc:
build_options:
### For maintenance, otherwise only "the best" version of each package is picked:
- take_all_available_versions
# - take_all_available_versions
- hide_flavor_in_product_directory_name
### Since the Backports product build is not self-contained in a single repository,
@@ -32,8 +32,8 @@ debug: split
repodata: all
# has only an effect during maintenance:
set_updateinfo_from: maintenance@opensuse.org
set_updateinfo_id_prefix: SUSE-PackageHub-16.0-
set_updateinfo_from: maint-coord@suse.de
# set_updateinfo_id_prefix: openSUSE-Leap-16.0-
flavors:
backports_aarch64:
@@ -57,78 +57,14 @@ packagesets:
packages:
- ALP
- ALP-dummy-release
- MozillaFirefox-branding-upstream
- NetworkManager-branding-upstream
- at-spi2-core-devel-32bit
- aws-cli
- bash-legacybin
- busybox-adduser
- busybox-attr
- busybox-bc
- busybox-bind-utils
- busybox-bzip2
- busybox-coreutils
- busybox-cpio
- busybox-diffutils
- busybox-dos2unix
- busybox-ed
- busybox-findutils
- busybox-gawk
- busybox-grep
- busybox-gzip
- busybox-hexedit
- busybox-hostname
- busybox-iproute2
- busybox-iputils
- busybox-kbd
- busybox-kmod
- busybox-less
- busybox-links
- busybox-man
- busybox-misc
- busybox-ncurses-utils
- busybox-net-tools
- busybox-netcat
- busybox-patch
- busybox-policycoreutils
- busybox-procps
- busybox-psmisc
- busybox-sed
- busybox-selinux-tools
- busybox-sendmail
- busybox-sh
- busybox-sha3sum
- busybox-sharutils
- busybox-syslogd
- busybox-sysvinit-tools
- busybox-tar
- busybox-telnet
- busybox-testsuite
- busybox-tftp
- busybox-time
- busybox-traceroute
- busybox-tunctl
- busybox-udhcpc
- busybox-unzip
- busybox-util-linux
- busybox-vi
- busybox-vlan
- busybox-wget
- busybox-which
- busybox-whois
- busybox-xz
- ceph-mgr-diskprediction-local
- chrony-pool-openSUSE
- cluster-md-kmp-azure
- cluster-md-kmp-rt
- connman-nmcompat
- cmake-mini
- dbus-1-devel-32bit
- debuginfod-dummy-client
- dlm-kmp-azure
- dlm-kmp-rt
- ecryptfs-utils
- elemental
- envsubst-mini
- ffmpeg-7-mini-libs
- gettext-runtime-mini
@@ -137,94 +73,39 @@ packagesets:
- gfs2-kmp-rt
- ghostscript-mini
- ghostscript-mini-devel
- geoipupdate-legacy
- geolite2legacy
- gio-branding-upstream
- grpc-source
- kernel-azure-livepatch-devel
- kernel-default-livepatch-devel
- kernel-livepatch-6_12_0-160000_4-default
- kernel-livepatch-6_12_0-160000_4-rt
- kernel-livepatch-6_12_0-160000_5-default
- kernel-livepatch-6_12_0-160000_5-rt
- kernel-livepatch-6_12_0-160000_6-default
- kernel-livepatch-6_12_0-160000_6-rt
- kernel-livepatch-6_12_0-160000_7-default
- kernel-livepatch-6_12_0-160000_7-rt
- kernel-rt-livepatch
- kernel-rt-livepatch-devel
- krb5-mini
- krb5-mini-devel
- kselftests-kmp-azure
- kselftests-kmp-default
- kselftests-kmp-rt
- leancrypto-kmp-default
- libatk-bridge-2_0-0-32bit
- libatspi0-32bit
- libavahi-client3-32bit
- libcups2-32bit
# - libcups2-32bit
- libcurl-mini4
- libcurl4-32bit
- libcurl-devel-32bit
- libdbus-1-3-32bit
- libdbus-glib-1-2-32bit
- libdc1394-26-32bit
- libdns_sd-32bit
- libdebuginfod-dummy-devel
- libdebuginfod1-dummy
- libdvbv5-0-32bit
- libgudev-1_0-0-32bit
- libgusb2-32bit
- libinput10-32bit
- liblirc_driver0-32bit
- libmanette-0_2-0-32bit
- libpcap1-32bit
- libpcap-devel-32bit
- libpolkit-agent-1-0-32bit
- libpolkit-gobject-1-0-32bit
- libpq5-32bit
- libpxbackend-1_0-mini
- libraptor2-0-32bit
- libressl
- libressl-devel
- libressl-devel-doc
# - libsybdb5-32bit
- libsystemd0-mini
# - libtdsodbc0-32bit
- libtss2-fapi1-32bit
- libudev-mini1
- libunbound-devel-mini
- libusb-1_0-0-32bit
- libusb-1_0-devel-32bit
- libwacom9-32bit
# - libzip5-32bit
- ntpd-rs
- ntpsec
- ntpsec-utils
- ocfs2-kmp-azure
- ocfs2-kmp-default
- ocfs2-kmp-rt
- openssl_tpm2
- pam-extra-32bit
- patterns-base-kernel_livepatching
- patterns-base-transactional_base
- patterns-micro-alt_onlyDVD
- patterns-micro-cloud
- patterns-micro-defaults
- patterns-micro-elemental_client
- patterns-micro-defaults
- patterns-micro-fips
- patterns-micro-hardware
- patterns-micro-ima-evm
- patterns-micro-kvm_host
- patterns-micro-onlyDVD
- patterns-micro-ra-agent
- patterns-micro-ra-verifier
- patterns-micro-salt_minion
- patterns-micro-sssd-ldap
- patterns-sap-bone
- patterns-base-update_test
- plymouth-branding-upstream
- postgresql17-devel-mini
- protobuf21-source
- reproducible-faketools
@@ -250,19 +131,12 @@ packagesets:
- reproducible-faketools-tar
- reproducible-faketools-verbose
- reproducible-faketools-zip
- sdbootutil-tukit
- sddm-branding-openSUSE
- sddm-qt6-branding-openSUSE
- systemd-default-settings-branding-openSUSE
- systemd-default-settings-branding-SLE-Micro
- systemd-default-settings-branding-upstream
- systemd-presets-branding-ALP-transactional
- systemd-presets-branding-Elemental
- systemd-mini
- systemd-mini-container
- systemd-mini-devel
- this-is-only-for-build-envs
- toolbox-branding-SLE-16.0
- udev-mini
- update-test-32bit-pkg
- update-test-affects-package-manager
@@ -275,14 +149,6 @@ packagesets:
- update-test-retracted
- update-test-security
- update-test-trivial
- xen
- xen-devel
- xen-libs
- xen-doc-html
- xen-tools
- xen-tools-domU
- xen-tools-xendomains-wait-disk
- yum-utils
# TODO: unneeded Leap package per architecture
- name: backports_unneeded_aarch64
@@ -702,9 +568,6 @@ packagesets:
- cargo-packaging
- cargo1.87
- cargo1.88
- cargo1.89
- cargo1.90
- cargo1.91
- catatonit
- cblas-devel
- cblas-devel-static
@@ -1400,18 +1263,22 @@ packagesets:
- go-doc
- go-md2man
- go-race
- go1.23
- go1.23-doc
- go1.23-openssl
- go1.23-openssl-doc
- go1.23-openssl-race
- go1.23-race
- go1.24
- go1.24-doc
- go1.24-openssl
- go1.24-openssl-race
- go1.24-race
- go1.25
- go1.25-doc
- go1.25-race
- gobject-introspection
- gobject-introspection-devel
- golang-github-cpuguy83-go-md2man
- golang-github-google-jsonnet
- golang-github-prometheus-prometheus
- golang-github-prometheus-promu
- golang-packaging
- google-errorprone-annotation
@@ -1821,13 +1688,11 @@ packagesets:
- ibus-gtk3
- ibus-gtk4
- ibus-hangul
- ibus-kkc
- ibus-lang
- ibus-libpinyin
- ibus-libzhuyin
- ibus-m17n
- ibus-rime
- ibus-skk
- ibus-table
- ibus-table-chinese-array
- ibus-table-chinese-cangjie
@@ -1843,7 +1708,6 @@ packagesets:
- ibus-table-chinese-wubi-jidian
- ibus-table-chinese-yong
- ibus-table-extraphrase
- ibus-unikey
- ibutils
- icu
- icu4j
@@ -1927,27 +1791,6 @@ packagesets:
- java-21-openjdk-javadoc
- java-21-openjdk-jmods
- java-21-openjdk-src
- java-22-openjdk
- java-22-openjdk-demo
- java-22-openjdk-devel
- java-22-openjdk-headless
- java-22-openjdk-javadoc
- java-22-openjdk-jmods
- java-22-openjdk-src
- java-23-openjdk
- java-23-openjdk-demo
- java-23-openjdk-devel
- java-23-openjdk-headless
- java-23-openjdk-javadoc
- java-23-openjdk-jmods
- java-23-openjdk-src
- java-24-openjdk
- java-24-openjdk-demo
- java-24-openjdk-devel
- java-24-openjdk-headless
- java-24-openjdk-javadoc
- java-24-openjdk-jmods
- java-24-openjdk-src
- java-cup
- java-cup-manual
- javacc
@@ -1988,7 +1831,6 @@ packagesets:
- jdom-javadoc
- jdom2
- jdom2-javadoc
- jdupes
- jeos-firstboot
- jetbrains-annotations
- jetbrains-annotations-javadoc
@@ -2149,7 +1991,6 @@ packagesets:
- kiwi-systemdeps-image-validation
- kiwi-systemdeps-iso-media
- kiwi-templates-Minimal
- kkc-data
- kmod
- kpartx
- krb5
@@ -2730,7 +2571,6 @@ packagesets:
- libcupsimage2
- libcurl-devel
- libcurl-devel-doc
- libcurl-mini4
- libcurl4
- libdaemon-devel
- libdaemon0
@@ -3212,7 +3052,6 @@ packagesets:
- libjcat1
- libjemalloc2
- libjitterentropy3
- libjodycode3
- libjpeg-turbo
- libjpeg62
- libjpeg62-devel
@@ -3263,7 +3102,6 @@ packagesets:
- libkeymap1
- libkeyutils1
- libkfont0
- libkkc2
- libkmip-devel
- libkmip-tools
- libkmip0
@@ -3304,8 +3142,9 @@ packagesets:
- liblcms2-2
- liblcms2-devel
- liblcms2-doc
- libldap-2
- libldap-2_5-0
- libldap-data
- libldap2
- libldapcpp-devel
- libldapcpp0
- libldb-devel
@@ -3411,7 +3250,6 @@ packagesets:
- libmpfr6
- libmpg123-0
- libmplex2-2_2-0
- libmsgpack-c2
- libmsgraph1-1
- libmspack-devel
- libmspack0
@@ -3751,7 +3589,6 @@ packagesets:
- libsigc++3-devel
- libsigc-2_0-0
- libsigc-3_0-0
- libskk0
- libslang2
- libslirp-devel
- libslirp0
@@ -4196,7 +4033,6 @@ packagesets:
- libzypp-devel
- libzypp-devel-doc
- libzypp-plugin-appdata
- lifecycle-data-sle
- lilv
- linux-atm
- linux-atm-devel
@@ -4387,7 +4223,6 @@ packagesets:
- maven-wagon-ssh-common
- maven-wagon-ssh-external
- mbimcli-bash-completion
- mcphost
- mcstrans
- md_monitor
- mdadm
@@ -4728,9 +4563,13 @@ packagesets:
- openjpeg2
- openjpeg2-devel
- openjpeg2-devel-doc
- openldap2_6-client
- openldap2_6-devel
- openldap2_6-doc
- openldap2-client
- openldap2-devel
- openldap2-devel-static
- openldap2-doc
- openldap2_5-client
- openldap2_5-devel
- openldap2_5-doc
- openmpi4
- openmpi4-config
- openmpi4-devel
@@ -5275,7 +5114,6 @@ packagesets:
- permissions-zypp-plugin
- pesign-obs-integration
- pgvector-devel
- php-composer2
- php8
- php8-bcmath
- php8-bz2
@@ -5456,6 +5294,7 @@ packagesets:
- postgresql-docs
- postgresql-jdbc
- postgresql-jdbc-javadoc
- postgresql-llvmjit
- postgresql-plperl
- postgresql-plpython
- postgresql-pltcl
@@ -5465,6 +5304,7 @@ packagesets:
- postgresql13-contrib
- postgresql13-devel
- postgresql13-docs
- postgresql13-llvmjit
- postgresql13-pgaudit
- postgresql13-pgvector
- postgresql13-plperl
@@ -5476,6 +5316,7 @@ packagesets:
- postgresql14-contrib
- postgresql14-devel
- postgresql14-docs
- postgresql14-llvmjit
- postgresql14-pgaudit
- postgresql14-pgvector
- postgresql14-plperl
@@ -5487,6 +5328,7 @@ packagesets:
- postgresql15-contrib
- postgresql15-devel
- postgresql15-docs
- postgresql15-llvmjit
- postgresql15-pgaudit
- postgresql15-pgvector
- postgresql15-plperl
@@ -5498,6 +5340,7 @@ packagesets:
- postgresql16-contrib
- postgresql16-devel
- postgresql16-docs
- postgresql16-llvmjit
- postgresql16-pgaudit
- postgresql16-pgvector
- postgresql16-plperl
@@ -5509,6 +5352,7 @@ packagesets:
- postgresql17-contrib
- postgresql17-devel
- postgresql17-docs
- postgresql17-llvmjit
- postgresql17-pgaudit
- postgresql17-pgvector
- postgresql17-plperl
@@ -6799,9 +6643,6 @@ packagesets:
- rhino-engine
- rhino-javadoc
- rhino-runtime
- rmt-server
- rmt-server-config
- rmt-server-pubcloud
- rollback-helper
- rootlesskit
- rp-pppoe
@@ -6858,9 +6699,6 @@ packagesets:
- rust-keylime
- rust1.87
- rust1.88
- rust1.89
- rust1.90
- rust1.91
- samba
- samba-ad-dc
- samba-ad-dc-libs
@@ -6878,7 +6716,6 @@ packagesets:
- samba-tool
- samba-winbind
- samba-winbind-libs
- sap-convergent-resource-agents
- sap-suse-cluster-connector
- sapcontrol-bash-completion
- saphana-checks
@@ -6899,7 +6736,6 @@ packagesets:
- sca-patterns-sle12
- sca-patterns-sle15
- sca-server-report
- scap-security-guide
- sccache
- schily-ctags
- schily-mt
@@ -6950,8 +6786,6 @@ packagesets:
- sisu-mojos
- sisu-mojos-javadoc
- sisu-plexus
- skkdic
- skkdic-extra
- skopeo
- skopeo-bash-completion
- skopeo-fish-completion
@@ -7089,6 +6923,7 @@ packagesets:
- system-user-news
- system-user-nobody
- system-user-ntp
- system-user-prometheus
- system-user-pulse
- system-user-qemu
- system-user-root
@@ -7786,8 +7621,8 @@ packagesets:
- fwts
- fwupd-efi
- gfs2-kmp-64kb
- go1.23-libstd
- go1.24-libstd
- go1.25-libstd
- google-cloud-sap-agent
- google-dracut-config
- google-guest-agent
@@ -7927,6 +7762,7 @@ packagesets:
- shim
- supportutils-plugin-suse-public-cloud
- system-group-ne
- systemd-boot
- tftpboot-agama-installer-SUSE_SLE_16-aarch64
- u-boot-rpi3
- u-boot-rpi3-doc
@@ -7962,9 +7798,7 @@ packagesets:
- kernel-default-livepatch
- kernel-kvmsmall
- kernel-kvmsmall-devel
- kernel-livepatch-6_12_0-160000_5-default
- kernel-livepatch-6_12_0-160000_6-default
- kernel-livepatch-6_12_0-160000_7-default
- kernel-livepatch-6_12_0-160000_20-default
- libLLVMSPIRVLib19
- libatopology2
- libdpdk-25
@@ -8075,9 +7909,7 @@ packagesets:
- dnsdist
- grub2-s390x-emu
- kernel-default-livepatch
- kernel-livepatch-6_12_0-160000_5-default
- kernel-livepatch-6_12_0-160000_6-default
- kernel-livepatch-6_12_0-160000_7-default
- kernel-livepatch-6_12_0-160000_20-default
- kernel-zfcpdump
- kiwi-settings
- libHBAAPI2
@@ -8098,6 +7930,8 @@ packagesets:
- luajit
- luajit-devel
- openssl-ibmca
- openssl-ibmca-engine
- openssl-ibmca-provider
- orarun
- osasnmpd
- pam-doc
@@ -8151,6 +7985,7 @@ packagesets:
- cloud-regionsrv-client-plugin-azure
- cloud-regionsrv-client-plugin-ec2
- cloud-regionsrv-client-plugin-gce
- containerized-data-importer-manifests
- crash-gcore
- disk-encryption-tool
- dmidecode
@@ -8179,8 +8014,8 @@ packagesets:
- gfxboot-devel
- glibc-livepatches
- gmmlib-devel
- go1.23-libstd
- go1.24-libstd
- go1.25-libstd
- google-cloud-sap-agent
- google-dracut-config
- google-guest-agent
@@ -8216,10 +8051,9 @@ packagesets:
- kernel-kvmsmall
- kernel-kvmsmall-devel
- kernel-kvmsmall-vdso
- kernel-livepatch-6_12_0-160000_5-default
- kernel-livepatch-6_12_0-160000_6-default
- kernel-livepatch-6_12_0-160000_7-default
- kernel-livepatch-6_12_0-160000_20-default
- kiwi-pxeboot
- kubevirt-manifests
- kubevirt-virtctl
- libFLAC++10-x86-64-v3
- libFLAC12-x86-64-v3
@@ -8488,6 +8322,7 @@ packagesets:
- sysctl-logger
- syslinux
- system-group-ne
- systemd-boot
- systemd-presets-branding-SLE-SAP
- tboot
- tftpboot-agama-installer-SUSE_SLE_16-x86_64

View File

@@ -1,5 +1,4 @@
## [openSUSE:Backports:SLE-16.0](https://build.opensuse.org/project/show/openSUSE:Backports:SLE-16.0)
Adding packages from Factory pool:
# git submodule add ../../pool/FreeCAD FreeCAD

973
_config

File diff suppressed because it is too large Load Diff

View File

@@ -1,3 +1,3 @@
{
"": ["maintenance-release-review"]
"": ["bigironman", "maxlin_factory", "lkocman-factory", "smithfarm"]
}

2
act

Submodule act updated: 8bfe9d9547...ed079edc0d

2
amarok

Submodule amarok updated: 2a1b2d88df...e1886b2904

2
bird3

Submodule bird3 updated: 8a14f83ff5...2976dbe55b

2
bpftop

Submodule bpftop updated: 812ae0e190...b0b6203a0c

2
cddlib

Submodule cddlib updated: 20da620429...f0f0c4f64c

2
cheat

Submodule cheat updated: e8f7ed9227...27656594fe

Submodule collectd deleted from 1b44e9bf0d

Submodule dehydrated deleted from 67698c18b1

2
exim

Submodule exim updated: aa2daa7cec...9f3f61dcb2

2
fcitx5

Submodule fcitx5 updated: 7957ae0538...3a742f2f96

2
flint

Submodule flint updated: 47c6375582...71e720ca64

Submodule fprintd deleted from 3d1b159ec5

Submodule ghc-file-io deleted from 41d782bf2c

2
gimp

Submodule gimp updated: fa630de895...aab3634bba

Submodule git-bug updated: 2390ae6cee...22bb247e73

2
gramps

Submodule gramps updated: 9feff03b4b...2fc8a56341

2
hauler

Submodule hauler updated: 4061841edd...9084f004c1

1
hplip

Submodule hplip deleted from 0e36a88b3f

2
knot

Submodule knot updated: d98a3c5e64...9637c2c881

2
labwc

Submodule labwc updated: 54ed9a7fa2...3ff4d66043

Submodule libsigrok deleted from 275d57e748

2
lutris

Submodule lutris updated: 937dc36983...ed0d79ecd4

2
matio

Submodule matio updated: cab79b5274...a301162ce9

Submodule melange updated: 4ca0d8a776...32c0112588

1
memtest86+ Submodule

Submodule memtest86+ added at 7e71f384a3

2
nano

Submodule nano updated: 91774e4d34...1a781c0c6b

Submodule nemo-extensions deleted from 82bf07112b

2
niri

Submodule niri updated: d66708d6ef...de5c060c81

2
nmon

Submodule nmon updated: 031ccfb27f...5d929ec369

Submodule obs-git-init deleted from 44020f580d

2
openQA

Submodule openQA updated: 3a65228a89...240b3ed944

2
opi

Submodule opi updated: 13283891b5...8e0625ef06

View File

@@ -1,66 +0,0 @@
<patchinfo incident="packagehub-1">
<issue tracker="bnc" id="1251334">VUL-0: chromium: release 141.0.7390.65</issue>
<issue tracker="cve" id="2025-11213">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11216">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11207">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11211">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11212">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11210">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="bnc" id="1250780">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11208">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-10890">VUL-0: chromium: release 140.0.7339.207</issue>
<issue tracker="cve" id="2025-11206">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11460">VUL-0: chromium: release 141.0.7390.65</issue>
<issue tracker="cve" id="2025-11219">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="bnc" id="1250472">VUL-0: chromium: release 140.0.7339.207</issue>
<issue tracker="cve" id="2025-11205">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-10891">VUL-0: chromium: release 140.0.7339.207</issue>
<issue tracker="cve" id="2025-11458"/>
<issue tracker="cve" id="2025-11215">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11209">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-10892">VUL-0: chromium: release 140.0.7339.207</issue>
<packager>AndreasStieger</packager>
<rating>critical</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 141.0.7390.76:
* Do not send URLs as AIM input. This is to resolve a privacy
concern, around passing urls to AI Mode.
Chromium 141.0.7390.65 (boo#1251334):
* CVE-2025-11458: Heap buffer overflow in Sync
* CVE-2025-11460: Use after free in Storage
* CVE-2025-11211: Out of bounds read in WebCodecs
Chromium 141.0.7390.54 (stable released 2025-09-30) (boo#1250780)
* CVE-2025-11205: Heap buffer overflow in WebGPU
* CVE-2025-11206: Heap buffer overflow in Video
* CVE-2025-11207: Side-channel information leakage in Storage
* CVE-2025-11208: Inappropriate implementation in Media
* CVE-2025-11209: Inappropriate implementation in Omnibox
* CVE-2025-11210: Side-channel information leakage in Tab
* CVE-2025-11211: Out of bounds read in Media
* CVE-2025-11212: Inappropriate implementation in Media
* CVE-2025-11213: Inappropriate implementation in Omnibox
* CVE-2025-11215: Off by one error in V8
* CVE-2025-11216: Inappropriate implementation in Storage
* CVE-2025-11219: Use after free in V8
* Various fixes from internal audits, fuzzing and other initiatives
Chromium 141.0.7390.37 (beta released 2025-09-24)
Chromium 140.0.7339.207 (boo#1250472)
* CVE-2025-10890: Side-channel information leakage in V8
* CVE-2025-10891: Integer overflow in V8
* CVE-2025-10892: Integer overflow in V8
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,17 +0,0 @@
<patchinfo incident="packagehub-3">
<issue tracker="bnc" id="1252013">VUL-0: CVE-2025-11756: chromium: Use after free in Safe Browsing</issue>
<issue tracker="cve" id="2025-11756"/>
<packager>AndreasStieger</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 141.0.7390.107:
* CVE-2025-11756: Use after free in Safe Browsing (boo#1252013)
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,17 +0,0 @@
<patchinfo incident="packagehub-11">
<issue tracker="bnc" id="1250487">VUL-0: CVE-2025-59682: python-Django,python-Django4: Potential partial directory-traversal via archive.extract()</issue>
<issue tracker="cve" id="2025-59682">VUL-0: CVE-2025-59682: python-Django,python-Django4: Potential partial directory-traversal via archive.extract()</issue>
<issue tracker="cve" id="2025-59681"/>
<issue tracker="bnc" id="1250485">VUL-0: CVE-2025-59681: python-Django,python-Django4: Potential SQL injection in QuerySet.annotate(), alias(), aggregate(), and extra() on MySQL and MariaDB</issue>
<packager>mcalabkova</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for python-Django</summary>
<description>This update for python-Django fixes the following issues:
- CVE-2025-59681: Fixed a potential SQL injection in QuerySet.annotate(), alias(), aggregate(), and extra() on MySQL and MariaDB (boo#1250485)
- CVE-2025-59682: Fixed a potential partial directory-traversal via archive.extract() (boo#1250487)
</description>
<package>python-Django</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,103 +0,0 @@
<patchinfo incident="packagehub-4">
<packager>dheidler</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for opi</summary>
<description>This update for opi fixes the following issues:
- Version 5.8.8
* Fix adding openh264 repo on leap 16.0
This update for opi fixes the following issues:
- Version 5.8.7
* Fix ocenaudio url
* Add LocalSend plugin
* Run all tests in verbose mode
* Print written repo files in verbose mode
* Increase timeouts in test/06_install_non_interactive.py
* Remove DNF references from README.md
This update for opi fixes the following issues:
- Version 5.8.5
* add librewolf plugin (#205)
* Install .NET 9
* Add verbose mode
* Change the order of the process in the github module
* Add rustdesk plugin
This update for opi fixes the following issues:
- Version 5.8.4
* Use arm64 rpm for libation on aarch64
This update for opi fixes the following issues:
- Version 5.8.3
* Install dependencies rpm-build and squashfs at runtime if needed
* Drop DNF support
This update for opi fixes the following issues:
- Version 5.8.2
* Warn about adding staging repos
* Gracefully handle zypper exit code 106 (repos without cache present)
This update for opi fixes the following issues:
- Version 5.8.1
* Fix SyntaxWarning: invalid escape sequence '\s'
This update for opi fixes the following issues:
- Version 5.8.0
* Add mullvad-brower
This update for opi fixes the following issues:
- Version 5.7.0
* Add leap-only plugin to install zellij from github release
* Don't use subprocess.run user kwarg on 15.6
* Fix tests: Use helloworld-opi-tests instead of zfs
* Perform search despite locked rpmdb
* Simplify backend code
This update for opi fixes the following issues:
- Use no macros in url in .spec for packtrack
This update for opi fixes the following issues:
- Version 5.6.0
* Add plugin to install vagrant from hashicorp repo
This update for opi fixes the following issues:
- Version 5.5.0
* Update opi/plugins/collabora.py
* add collabora office desktop
* Omit unsupported cli args on leap in 99_install_opi.py
* Switch to PEP517 install
* Fix 09_install_with_multi_repos_in_single_file_non_interactive.py
* Fix 07_install_multiple.py on tumbleweed
* Fix test suite on tumbleweed
* Update available apps in opi - README.md
This update for opi fixes the following issues:
- Version 5.4.0
* Show key ID when importing or deleting package signing keys
* Add option to install google-chrome-canary
This update for opi fixes the following issues:
- Version 5.3.0
* Fix tests for new zypper version
* fix doblue slash in packman repo url
* Add Plugin to install Libation
</description>
<package>opi</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,17 +0,0 @@
<patchinfo incident="packagehub-5">
<packager>michals</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for virtme</summary>
<description>This update for virtme fixes the following issues:
- Update to 1.38:
* Fix the infamous Stale file handle (ESTALE) errors with virtiofsd
* Fix for systemctl daemon-reload when systemd support is enabled
* Fix for a kernel symlink issue affecting openSUSE/SLE
* README/docs improvements
* Various coding style cleanups
</description>
<package>virtme</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,55 +0,0 @@
<patchinfo incident="packagehub-6">
<issue tracker="bnc" id="1206292">[SELinux] Wine/Proton not working reliably with default SELinux configuration</issue>
<packager>regularhunter</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for lutris</summary>
<description>This update for lutris fixes the following issues:
- Move selinux dependency
- Fix gaming under selinux (bsc#1206292)
- Fix wrong placement of lang_package macro in spec file
- Update to 0.5.19:
* Fix Proton integration bugs so Proton-fixes are applied
* Do not offer DXVK, VKD3D, D3D Extras or DDXVK-NVAPI on Proton versions;
Proton will handle these.
* The "Enable Esync" and "Enable Fsync" settings are now passed on to Proton
* DXVK's integrated D8VK will be enabled in Proton
* Emulator BIOS file location (used by libretro) may be set in Preferences
* Obtain the release year from GOG and Itch.io.
* MAME Machine setting uses a searchable entry for its enourmous list
* Support for importing Commodore 64 ROMs
- Add BuildRequires apparmor-abstractions, apparmor-rpm-macros for
Leap, fix for build error: directories not owned by a package:
/etc/apparmor.d
- update to 0.5.18:
* Lutris downloads the latest GE-Proton build for Wine if any Wine version is installed
* Use dark theme by default
* Display cover-art rather than banners by default
* Add 'Uncategorized' view to sidebar
* Preference options that do not work on Wayland will be hidden when on Wayland
* Game searches can now use fancy tags like 'installed:yes' or 'source:gog', with explanatory tool-tip
* A new filter button on the search box can build many of these fancy tags for you
* Runner searches can use 'installed:yes' as well, but no other fancy searches or anything
* Updated the Flathub and Amazon source to new APIs, restoring integration
* Itch.io source integration will load a collection named 'Lutris' if present
* GOG and Itch.io sources can now offer Linux and Windows installers for the same game
* Added support for the 'foot' terminal
* Support for DirectX 8 in DXVK v2.4
* Support for Ayatana Application Indicators
* Additional options for Ruffle runner
* Updated download links for the Atari800 and MicroM8 runners
* No longer re-download cached installation files even when some are missing
* Lutris log is included in the 'System' tab of the Preferences window
* Improved error reporting, with the Lutris log included in the error details
* Add AppArmor profile for Ubuntu versions &gt;= 23.10
* Add Duckstation runner
</description>
<package>lutris</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,16 +0,0 @@
<patchinfo incident="packagehub-8">
<issue tracker="cve" id="2025-12036">VUL-0: CVE-2025-12036: chromium: Inappropriate implementation in V8</issue>
<issue tracker="bnc" id="1252402">VUL-0: CVE-2025-12036: chromium: Inappropriate implementation in V8</issue>
<packager>AndreasStieger</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 141.0.7390.122:
* CVE-2025-12036: Inappropriate implementation in V8 (boo#1252402)
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,57 +0,0 @@
<patchinfo incident="packagehub-7">
<issue tracker="bnc" id="1248768">[warewulf, REGRESSION] None of the disk/partition/filesystem Options to `wwctl profile set` appear to do anything</issue>
<issue tracker="bnc" id="1227465">[warewulf, kernel] After updating the Kernel in the Container Image 'wwctl container list' still shows old</issue>
<issue tracker="bnc" id="1246082">warewulf4-slurm suggest slurm only</issue>
<issue tracker="bnc" id="1248906">VUL-0: CVE-2025-58058: warewulf4: github.com/ulikunitz/xz: github.com/ulikunitz/xz leaks memory</issue>
<issue tracker="bnc" id="1227686">[warewulf, kernel] Feature: Allow to determine the Kernel to boot - with none set, take latest</issue>
<issue tracker="cve" id="2025-58058">cve#2025-58058 not resolved: 404 Client Error: Not Found for url: https://bugzilla.suse.com/api2/issues/?references__name=CVE-2025-58058</issue>
<packager>mslacken</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for warewulf4</summary>
<description>This update for warewulf4 fixes the following issues:
Changes in warewulf4:
- Update to version 4.6.4:
* v4.6.4 release updates
* Convert disk booleans from wwbool to *bool which allows bools in
disk to be set to false via command line (bsc#1248768)
* Update NetworkManager Overlay
* Disable ipv4 in NetworkManager if no address or route is specified
* fix(wwctl): Create overlay edit tempfile in tmpdir
* Add default for systemd name for warewulf in warewulf.conf
* Atomic overlay file application in wwclient
* Simpler names for overlay methods
* Fix warewulfd api behavior when deleting distribution overlay
- Update to version 4.6.3:
* v4.6.3 release
* IPv6 iPXE support
* Fix a syntax error in the RPM specfile
* Fix a race condition in wwctl overlay edit
* Fixed handling of comma-separated mount options in `fstab` and `ignition` overlays
* Move reexec.Init() to beginning of wwctl
* Add documentation for using tmpfs to distribute across numa nodes
* added warewuld configure option
* Fix wwctl upgrade nodes to handle kernel argument lists (bsc#1227686 bsc#1227465)
* Address copilot review from #1945
* Refactor wwapi tests for proper isolation
* Bugfix: cloning a site overlay when parent dir does not exist
* Clone to a site overlay when adding files in wwapi
* Consolidated createOverlayFile and updateOverlayFile to addOverlayFile
* Support for creating and updating overlay file in wwapi
* Only return overlay files that refer to a path within the overlay
* add overlay file deletion support
* DELETE /api/overlays/{id}?force=true can delete overlays in use
* Restore idempotency of PUT /api/nodes/{id}
* Simplify overlay mtime api and add tests
* add node overlay buildtime
* Improved netplan support
* Rebuild overlays for discovered nodes
* Restrict userdocs from building during pr when not modified
* Update to v4.6.2 GitHub release notes
</description>
<package>warewulf4</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,11 +0,0 @@
<patchinfo incident="packagehub-9">
<packager>dgarcia</packager>
<rating>moderate</rating>
<category>optional</category>
<summary>Optional update for fprintd</summary>
<description>
This update ships fprintd 1.94.4 to openSUSE Leap 16.0 and SLES Package Hub 16.0
</description>
<package>fprintd</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,129 +0,0 @@
<patchinfo incident="packagehub-13">
<packager>os-autoinst-obs-workflow</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for openQA, os-autoinst</summary>
<description>This update for openQA, os-autoinst fixes the following issues:
Changes in openQA:
- Update to version 5.1761296552.ae7c17aa:
* Add tests for file_security_policy
* Pass parameter $is_userfile to log_url
* Remove redirect and serve files as attachments if necessary
* Serve files uploaded by tests via asset domain
* Use direct link to subdomain for the test assets
* Revert "Don't redirect to asset domain via /needles/ID/(image|json) route"
* Revert "Don't redirect screenshots, thumbs and needles to files_domain"
- Update to version 5.1761228068.a3a7f84d:
* Dependency cron 2025-10-23
- Update to version 5.1761037330.ad78558e:
* Avoid needless check for number of clones
* Avoid creation of `git_clone` tasks for jobs with empty `DISTRI`
- Update to version 5.1760515610.a802d1dd:
* Lower the prio of archiving jobs to avoid piling up finalize jobs
* Add signatures in Schema::Result::ApiKeys
- Update to version 5.1760245411.e3aeaaec:
* Dependency cron 2025-10-12
- Update to version 5.1760108577.fd2f2a48:
* Log unavailability due to high load only as warning
* Filter job stats of scheduled products also by arch and build
* Document how to disable image optimizations
* Make image optimization errors stop the job producing an incomplete job
* Improve wording in description about job stats API
* Run `optipng` for real and handle errors if it fails
- Update to version 5.1759912962.689b31ed:
* Avoid failing `obs_rsync_run` jobs when restarting `openqa-gru.service`
- Update to version 5.1759834744.06a7028a:
* parser: ktap: Return earlier if subtest result is SKIP
* parser: ktap: Fallback to subtest index if name is not available
- Update to version 5.1759440640.bb989cab:
* Don't redirect to asset domain via /needles/ID/(image|json) route
- Update to version 5.1759402042.49e912c3:
* Introduce array job settings
* Retry `obs_rsync_update_*` tasks if Gru service terminates
- Update to version 5.1759329378.3b8e8685:
* Reduce the number of required checks for Mergify again
* Ensure a failing cache service is seen as such by the worker/scheduler
- Update to version 5.1759248257.70b23b32:
* Increase number of successful checks in Mergify config again
* Disable Helm Chart CI checks temporarily
* Consider all jobs for cleanup, not just jobs that were executed
* Verify job deletion when dependent job present
- Update to version 5.1759149505.49c40b0b:
* Use always the latest PostgreSQL image in Compose and documentation
* Update the PostgreSQL version in the contributing documentation
* Update PostgreSQL data path in Docker Compose file after updating to v18
* Specify PostgreSQL version in Docker Compose configuration explicitly
* mergify: Allow more time for dependabot update reaction
* Remove version property from docker-compose
* README: Fix openQA badge after switch to UEFI
* build(deps-dev): bump eslint from 9.35.0 to 9.36.0
- Update to version 5.1758910696.7549bb98:
* Replace argument assignment with signatures on ObsRsync/Task
* Enable automatic dependabot updates again after improvements
* docs: Add instructions for a continuous dashboard setup
* Replace argument assignment with signatures Folders package
* Fully cover WebAPI::Plugin::ObsRsync::Controller::Folders
* script: Also use OPENQA_WEBUI_MODE for related services
- Update to version 5.1758814503.03d923a4:
* Use Mojo::File in Worker for is_qemu_running
* Use Mojo::File in Worker for meminfo
* Document archiving of important jobs
- Update to version 5.1758729450.b88c0b40:
* Reject jobs if worker is broken when receiving a new job
- Update to version 5.1758711845.e5c02221:
* script: Allow to configure openQA mode
* t: run at least once Memorylimit register with max_rss_limit &gt; 0
* Replace argument assignation with signatures on MemoryLimit
Changes in os-autoinst:
- Update to version 5.1761036042.c43e4ab:
* Update perltidy
* Allow redirects in needle NeedleDownloader
* Don't overwrite firewall xml
* Add UEFI support for ipxe kernel boot
* os-autoinst-setup-multi-machine: Simplify determine_ethernet_interface
- Update to version 5.1759328765.e7438f7:
* Allow redirects in needle NeedleDownloader
* Don't overwrite firewall xml
* Add UEFI support for ipxe kernel boot
* t: Use consistent Mojo::File in 08-autotest as well
* os-autoinst-setup-multi-machine: Simplify determine_ethernet_interface
- Update to version 5.1759134946.e08d7c7:
* Add UEFI support for ipxe kernel boot
* t: Use consistent Mojo::File in 08-autotest as well
* os-autoinst-setup-multi-machine: Simplify determine_ethernet_interface
* os-autoinst-setup-multi-machine: Only call zypper when necessary
* os-autoinst-setup-multi-machine: Improve network interface check
</description>
<package>openQA</package>
<package>openQA:openQA-devel-test</package>
<package>openQA:openQA-test</package>
<package>openQA:openQA-worker-test</package>
<package>openQA:openQA-client-test</package>
<package>os-autoinst</package>
<package>os-autoinst:os-autoinst-test</package>
<package>os-autoinst:os-autoinst-devel-test</package>
<package>os-autoinst:os-autoinst-openvswitch-test</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,28 +0,0 @@
<patchinfo incident="packagehub-18">
<packager>jsulig</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for amarok</summary>
<description>This update for amarok fixes the following issues:
Changes in amarok:
- Update to version 3.3.1
* Enable saving and loading script console items, autocompletion
in script console, and re-enable some more scripting functionality
* Convert the remaining main UI toolbuttons to use icons from theme
* Clear out remnants of the now-discontinued MusicDNS service
* Fix example permission grant command in database settings (kde#386004)
* Fix equalizer gains not updating when selecting some presets (kde#463908)
* Fix continuing playback after timecoded tracks (cue files etc, (kde#270003)
* Fix MusicBrainz search
* Properly start CD playback if Amarok is not already running (kde#503310)
* Also transmit embedded cover art through MPRIS (kde#357620)
* Don't show transcoding dialog after canceling download (kde#275840)
* Load network information earlier to avoid crashes on startup (kde#507497)
* Try to export as-compatible-as-possible playlist files (kde#507329)
* Fix some random crashes during playback
</description>
<package>amarok</package>
</patchinfo>

View File

@@ -1,14 +0,0 @@
<patchinfo incident="packagehub-67">
<packager>lkocman</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for grub2-compat-ia32</summary>
<description>This update for grub2-compat-ia32 fixes the following issues:
- Drop update-bootloader --get as it returns 0
even if the variable is unset
- Add update-bootloader also into post and postun Requires
</description>
<package>grub2-compat-ia32</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,32 +0,0 @@
<patchinfo incident="packagehub-16">
<packager>miska</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for knot</summary>
<description>This update for knot fixes the following issues:
Changes in knot:
- disable quic in stable releases due to the missing libraries
update to version 3.5.1, see
https://www.knot-dns.cz/2025-10-16-version-351.html
update to version 3.5.0, see
https://www.knot-dns.cz/2025-09-18-version-350.html
update to version 3.4.8, see
https://www.knot-dns.cz/2025-07-29-version-348.html
Use the libngtcp2_crypto_gnutls-devel instead of libngtcp2-devel
to account for the openssl and gnutls devel files split in ngtcp2.
update to version 3.4.7, see
https://www.knot-dns.cz/2025-06-04-version-347.html
</description>
<package>knot</package>
</patchinfo>

View File

@@ -1,48 +0,0 @@
<patchinfo incident="packagehub-10">
<issue tracker="cve" id="2025-10527">This vulnerability affects Firefox &lt; 143, Firefox ESR &lt; 140.3, Thunderbird &lt; 143, and Thunderbird &lt; 140.3.</issue>
<issue tracker="cve" id="2025-10536">This vulnerability affects Firefox &lt; 143, Firefox ESR &lt; 140.3, Thunderbird &lt; 143, and Thunderbird &lt; 140.3.</issue>
<issue tracker="cve" id="2025-10528">This vulnerability affects Firefox &lt; 143, Firefox ESR &lt; 140.3, Thunderbird &lt; 143, and Thunderbird &lt; 140.3.</issue>
<issue tracker="cve" id="2025-10537">Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox &lt; 143, Firefox ESR &lt; 140.3, Thunderbird &lt; 143, and Thunderbird &lt; 140.3.</issue>
<issue tracker="cve" id="2025-10529">This vulnerability affects Firefox &lt; 143, Firefox ESR &lt; 140.3, Thunderbird &lt; 143, and Thunderbird &lt; 140.3.</issue>
<issue tracker="cve" id="2025-10532">This vulnerability affects Firefox &lt; 143, Firefox ESR &lt; 140.3, Thunderbird &lt; 143, and Thunderbird &lt; 140.3.</issue>
<issue tracker="cve" id="2025-10533">This vulnerability affects Firefox &lt; 143, Firefox ESR &lt; 115.28, Firefox ESR &lt; 140.3, Thunderbird &lt; 143, and Thunderbird &lt; 140.3.</issue>
<issue tracker="bnc" id="1249391">VUL-0: MozillaFirefox / MozillaThunderbird: update to 143.0 and 140.3esr</issue>
<packager>Yoshio_Sato</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for MozillaThunderbird</summary>
<description>This update for MozillaThunderbird fixes the following issues:
Changes in MozillaThunderbird:
Mozilla Thunderbird 140.3.0 ESR:
* Right-clicking 'List-ID' -&gt; 'Unsubscribe' created double encoded
draft subject
* Thunderbird could crash on startup
* Thunderbird could crash when importing mail
* Opening Website header link in RSS feed incorrectly re-encoded
URL parameters
MFSA 2025-78 (bsc#1249391)
* CVE-2025-10527
Sandbox escape due to use-after-free in the Graphics:
Canvas2D component
* CVE-2025-10528
Sandbox escape due to undefined behavior, invalid pointer in
the Graphics: Canvas2D component
* CVE-2025-10529
Same-origin policy bypass in the Layout component
* CVE-2025-10532
Incorrect boundary conditions in the JavaScript: GC component
* CVE-2025-10533
Integer overflow in the SVG component
* CVE-2025-10536
Information disclosure in the Networking: Cache component
* CVE-2025-10537
Memory safety bugs fixed in Firefox ESR 140.3, Thunderbird
ESR 140.3, Firefox 143 and Thunderbird 143
</description>
<package>MozillaThunderbird</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,27 +0,0 @@
<patchinfo incident="packagehub-17">
<issue tracker="cve" id="2025-59438">VUL-0: CVE-2025-59438: TRACKERBUG: mbedtls: padding oracle attack possible through timing of cipher error reporting</issue>
<packager>dheidler</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for micropython</summary>
<description>This update for micropython fixes the following issues:
Changes in micropython:
- Build with mbedtls-3.6.5 instead of bundled 3.6.2 to fix CVE-2025-59438
Version 1.26.0:
* Added machine.I2CTarget for creating I2C target devices on multiple ports.
* New MCU support: STM32N6xx (800 MHz, ML accel) &amp; ESP32-C2 (WiFi + BLE).
* Major float accuracy boost (~28% → ~98%), constant folding in compiler.
* Optimized native/Viper emitters; reduced heap use for slices.
* Time functions standardized (19702099); new boards across ESP32, SAMD, STM32, Zephyr.
* ESP32: ESP-IDF 5.4.2, flash auto-detect, PCNT class, LAN8670 PHY.
* RP2: compressed errors, better lightsleep, hard IRQ timers.
* Zephyr v4.0.0: PWM, SoftI2C/SPI, BLE runtime services, boot.py/main.py support.
* mpremote adds fs tree, improved df, portable config paths.
* Updated lwIP, LittleFS, libhydrogen, stm32lib; expanded hardware/CI tests.
</description>
<package>micropython</package>
</patchinfo>

View File

@@ -1,56 +0,0 @@
<patchinfo incident="packagehub-12">
<issue tracker="cve" id="2025-12441"/>
<issue tracker="cve" id="2025-12429"/>
<issue tracker="cve" id="2025-12431"/>
<issue tracker="cve" id="2025-12444"/>
<issue tracker="cve" id="2025-12428"/>
<issue tracker="cve" id="2025-12438"/>
<issue tracker="cve" id="2025-12435"/>
<issue tracker="cve" id="2025-12437"/>
<issue tracker="cve" id="2025-12443"/>
<issue tracker="cve" id="2025-12430"/>
<issue tracker="cve" id="2025-12440"/>
<issue tracker="cve" id="2025-12445"/>
<issue tracker="cve" id="2025-12446"/>
<issue tracker="cve" id="2025-12432"/>
<issue tracker="cve" id="2025-12436"/>
<issue tracker="cve" id="2025-12434"/>
<issue tracker="cve" id="2025-54874">VUL-0: CVE-2025-54874: TRACKERBUG: openjpeg: missing error check can lead to the use of an uninitialized pointer and cause an out-of-bounds heap</issue>
<issue tracker="cve" id="2025-12433"/>
<issue tracker="bnc" id="1252881">VUL-0: chromium: release 142.0.7444.59</issue>
<issue tracker="cve" id="2025-12439"/>
<issue tracker="cve" id="2025-12447"/>
<packager>AndreasStieger</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 142.0.7444.59, the stable channel promotion of 142.
Security fixes (boo#1252881):
* CVE-2025-12428: Type Confusion in V8
* CVE-2025-12429: Inappropriate implementation in V8
* CVE-2025-12430: Object lifecycle issue in Media
* CVE-2025-12431: Inappropriate implementation in Extensions
* CVE-2025-12432: Race in V8
* CVE-2025-12433: Inappropriate implementation in V8
* CVE-2025-12434: Race in Storage
* CVE-2025-12435: Incorrect security UI in Omnibox
* CVE-2025-12436: Policy bypass in Extensions
* CVE-2025-12437: Use after free in PageInfo
* CVE-2025-12438: Use after free in Ozone
* CVE-2025-12439: Inappropriate implementation in App-Bound Encryption
* CVE-2025-12440: Inappropriate implementation in Autofill
* CVE-2025-12441: Out of bounds read in V8
* CVE-2025-12443: Out of bounds read in WebXR
* CVE-2025-12444: Incorrect security UI in Fullscreen UI
* CVE-2025-12445: Policy bypass in Extensions
* CVE-2025-12446: Incorrect security UI in SplitView
* CVE-2025-12447: Incorrect security UI in Omnibox
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,24 +0,0 @@
<patchinfo incident="packagehub-14">
<packager>adrianSuSE</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for product-composer</summary>
<description>This update for product-composer fixes the following issues:
Update to version 0.6.16:
- merge updateinfo's with same id into one
- error out on updateinfo with same id, but non-mergable content
Update to version 0.6.15:
* Support updateinfo handling in arch specific meta data
Update to version 0.6.14:
* option to disable joliet extensions on media
* no joliet extensions on source and debug media anymore
</description>
<package>product-composer</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,63 +0,0 @@
<patchinfo incident="packagehub-15">
<issue tracker="cve" id="2025-11710"/>
<issue tracker="cve" id="2025-11709"/>
<issue tracker="cve" id="2025-11715"/>
<issue tracker="bnc" id="1247774">[SLFO:Main] [SLES16.0] MozillaFirefox fails to build on s390x</issue>
<issue tracker="cve" id="2025-11712"/>
<issue tracker="cve" id="2025-11708"/>
<issue tracker="cve" id="2025-11714"/>
<issue tracker="cve" id="2025-11713"/>
<issue tracker="cve" id="2025-11711"/>
<issue tracker="bnc" id="1251263">VUL-0: MozillaFirefox / MozillaThunderbird: update to 144.0 and 140.4esr</issue>
<packager>MSirringhaus</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for MozillaThunderbird</summary>
<description>This update for MozillaThunderbird fixes the following issues:
Mozilla Thunderbird 140.4:
* changed: Account Hub is now disabled by default for second
email account
* changed: Flatpak runtime has been updated to Freedesktop SDK
24.08
* fixed: Users could not read mail signed with OpenPGP v6 and
PQC keys
* fixed: Image preview in Insert Image dialog failed with CSP
error for web resources
* fixed: Emptying trash on exit did not work with some
providers
* fixed: Thunderbird could crash when applying filters
* fixed: Users were unable to override expired mail server
certificate
* fixed: Opening Website header link in RSS feed incorrectly
re-encoded URL parameters
* fixed: Security fixes
MFSA 2025-85 (bsc#1251263):
* CVE-2025-11708
Use-after-free in MediaTrackGraphImpl::GetInstance()
* CVE-2025-11709
Out of bounds read/write in a privileged process triggered by
WebGL textures
* CVE-2025-11710
Cross-process information leaked due to malicious IPC
messages
* CVE-2025-11711
Some non-writable Object properties could be modified
* CVE-2025-11712
An OBJECT tag type attribute overrode browser behavior on web
resources without a content-type
* CVE-2025-11713
Potential user-assisted code execution in “Copy as cURL”
command
* CVE-2025-11714
Memory safety bugs fixed in Firefox ESR 115.29, Firefox ESR
140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144
* CVE-2025-11715
Memory safety bugs fixed in Firefox ESR 140.4, Thunderbird
ESR 140.4, Firefox 144 and Thunderbird 144
</description>
<package>MozillaThunderbird</package>
</patchinfo>

View File

@@ -1,23 +0,0 @@
<patchinfo incident="packagehub-19">
<issue tracker="bnc" id="1253089">VUL-0: chromium: release 142.0.7444.134</issue>
<issue tracker="cve" id="2025-12727"/>
<issue tracker="cve" id="2025-12725"/>
<issue tracker="cve" id="2025-12729">VUL-0: chromium: release 142.0.7444.134</issue>
<issue tracker="cve" id="2025-12728"/>
<issue tracker="cve" id="2025-12726"/>
<packager>AndreasStieger</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 142.0.7444.134 (boo#1253089):
* CVE-2025-12725: Out of bounds write in WebGPU
* CVE-2025-12726: Inappropriate implementation in Views
* CVE-2025-12727: Inappropriate implementation in V8
* CVE-2025-12728: Inappropriate implementation in Omnibox
* CVE-2025-12729: Inappropriate implementation in Omnibox
</description>
<package>chromium</package>
</patchinfo>

View File

@@ -1,14 +0,0 @@
<patchinfo incident="packagehub-20">
<packager>adrianSuSE</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for product-composer</summary>
<description>This update for product-composer fixes the following issues:
Update to version 0.6.17:
- fix multiarch media handling of updateinfo id's
</description>
<package>product-composer</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,16 +0,0 @@
<patchinfo incident="packagehub-21">
<issue tracker="bnc" id="1253267">VUL-0: chromium: release 142.0.7444.162</issue>
<issue tracker="cve" id="2025-13042">VUL-0: chromium: release 142.0.7444.162</issue>
<packager>AndreasStieger</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 142.0.7444.162 (boo#1253267):
* CVE-2025-13042: Inappropriate implementation in V8
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,571 +0,0 @@
<patchinfo incident="packagehub-30">
<issue tracker="cve" id="2025-0377">VUL-0: CVE-2025-0377: TRACKERBUG: go-slug: improper validation of paths when extracting tar files containing Terraform configuration files can lead to arbitrary file writes</issue>
<issue tracker="cve" id="2024-45338">VUL-0: CVE-2024-45338: TRACKERBUG: golang.org/x/net/html: denial of service due to non-linear parsing of case-insensitive content</issue>
<packager>manfred-h</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for helmfile</summary>
<description>This update for helmfile fixes the following issues:
Changes in helmfile:
Update to version 1.1.9:
* feat: update strategy for reinstall by @simbou2000 in #2019
* build(deps): bump github.com/aws/aws-sdk-go-v2/service/s3
from 1.88.7 to 1.89.0 by @dependabot[bot] in #2239
* Fix: Handle empty helmBinary in base files with environment
values by @Copilot in #2237
Update to version 1.1.8:
* build(deps): bump github.com/hashicorp/go-getter from 1.8.0 to
1.8.1 by @dependabot[bot] in #2194
* fix typos in both comment and error message by @d-fal in #2199
* cleanup disk in release ci by @yxxhero in #2203
* Migrate AWS SDK from v1 to v2 to resolve deprecation warnings
by @Copilot in #2202
* build(deps): bump github.com/helmfile/vals from 0.42.1 to 0.42.2
by @dependabot[bot] in #2200
* build(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from
1.88.2 to 1.88.3 by @dependabot[bot] in #2206
* Bump Alpine to 3.22 in Dockerfile by @orishamir in #2205
* build(deps): bump github.com/aws/aws-sdk-go-v2/config from
1.31.10 to 1.31.12 by @dependabot[bot] in #2207
* Add yq to Dockerfile by @orishamir in #2208
* fix: skip chartify for build command jsonPatches by @sstarcher
in #2212
* build(deps): bump github.com/hashicorp/go-getter from 1.8.1 to
1.8.2 by @dependabot[bot] in #2210
* build(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from
1.88.3 to 1.88.4 by @dependabot[bot] in #2213
* build(deps): bump golang.org/x/term from 0.35.0 to 0.36.0 by
@dependabot[bot] in #2214
* Avoid fetching same chart/version multiple times by @Copilot
in #2197
* build(deps): bump github.com/helmfile/vals from 0.42.2 to
0.42.4 by @dependabot[bot] in #2217
* docs: add zread badge to README by @yxxhero in #2219
* Bump helm-diff to v3.13.1 by @Copilot in #2223
* build(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from
1.88.4 to 1.88.5 by @dependabot[bot] in #2226
* build(deps): bump github.com/aws/aws-sdk-go-v2/config from
1.31.12 to 1.31.13 by @dependabot[bot] in #2225
* build(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from
1.88.5 to 1.88.6 by @dependabot[bot] in #2230
* build(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 from
1.88.6 to 1.88.7 by @dependabot[bot] in #2232
* build(deps): bump github.com/aws/aws-sdk-go-v2/config from
1.31.13 to 1.31.15 by @dependabot[bot] in #2233
* Fix helmBinary and kustomizeBinary being ignored when using
bases by @Copilot in #2228
Update to version 1.1.7:
What's Changed
* fix pflag error by @zhaque44 in #2164
* build(deps): bump actions/setup-go from 5 to 6 by
@dependabot[bot] in #2166
* build(deps): bump github.com/hashicorp/go-getter from 1.7.9 to
1.7.10 by @dependabot[bot] in #2165
* build(deps): bump github.com/spf13/pflag from 1.0.9 to 1.0.10
by @dependabot[bot] in #2163
* Add helm diff installation to README by @nwneisen in #2170
* build(deps): bump github.com/hashicorp/go-getter from 1.7.10
to 1.8.0 by @dependabot[bot] in #2175
* build(deps): bump golang.org/x/term from 0.34.0 to 0.35.0 by
@dependabot[bot] in #2174
* build(deps): bump github.com/zclconf/go-cty from 1.16.4 to
1.17.0 by @dependabot[bot] in #2173
* Fix panic when helm isn't installed by @nwneisen in #2169
* build(deps): bump golang.org/x/sync from 0.16.0 to 0.17.0 by
@dependabot[bot] in #2172
* ci: update minikube and kubernetes versions by @yxxhero in #2181
* build(deps): bump k8s.io/apimachinery from 0.34.0 to 0.34.1 by
@dependabot[bot] in #2180
* Remove deprecated --wait-retries flag support to fix Helm
compatibility error by @Copilot in #2179
* build(deps): bump go.yaml.in/yaml/v2 from 2.4.2 to 2.4.3 by
@dependabot[bot] in #2183
* build: update Helm to v3.19.0 across all components by @yxxhero
in #2187
* build: update helm-diff plugin to v3.13.0 by @yxxhero in #2189
* feat: Implement caching for pulling OCI charts by @mustdiechik
in #2171
* build(deps): bump github.com/helmfile/chartify from 0.24.7 to
0.25.0 by @dependabot[bot] in #2190
- Update to version 1.1.6:
What's Changed
* build(deps): bump github.com/hashicorp/go-getter from 1.7.8 to
1.7.9 by @dependabot[bot] in #2139
* build(deps): bump github.com/zclconf/go-cty from 1.16.3 to
1.16.4 by @dependabot[bot] in #2145
* build: update helm to v3.18.6 by @yxxhero in #2144
* build(deps): bump github.com/stretchr/testify from 1.10.0 to
1.11.0 by @dependabot[bot] in #2150
* Add missing --timeout flag to helmfile sync command with
documentation by @Copilot in #2148
* Fix enableDNS flag missing in diff command and refactor
duplicate logic by @Copilot in #2147
* build(deps): bump github.com/stretchr/testify from 1.11.0 to
1.11.1 by @dependabot[bot] in #2151
* build(deps): bump github.com/ulikunitz/xz from 0.5.10 to 0.5.14
by @dependabot[bot] in #2154
* Bump github.com/ulikunitz/xz from v0.5.14 to v0.5.15 by @Copilot
in #2159
* build(deps): bump github.com/helmfile/vals from 0.42.0 to
0.42.1 by @dependabot[bot] in #2161
* build(deps): bump github.com/spf13/pflag from 1.0.7 to 1.0.9
by @dependabot[bot] in #2160
* build(deps): bump github.com/spf13/cobra from 1.9.1 to 1.10.1
by @dependabot[bot] in #2162
* Fix error propagation in helmfile diff when Kubernetes is
unreachable by @Copilot in #2149
- Update to version 1.1.5:
What's Changed
* build(deps): bump actions/checkout from 4 to 5 by
@dependabot[bot] in #2128
* Update recommended Helm versions in init.go and run.sh by
@yxxhero in #2129
* Add comprehensive .github/copilot-instructions.md for coding
agents by @Copilot in #2131
* refactor(state): extract getMissingFileHandler method for
clarity by @yxxhero in #2133
* Fix parseHelmVersion to handle helm versions without 'v'
prefix by @Copilot in #2132
* build(deps): bump k8s.io/apimachinery from 0.33.3 to 0.33.4
by @dependabot[bot] in #2136
* build(deps): bump github.com/helmfile/chartify from 0.24.6 to
0.24.7 by @dependabot[bot] in #2135
- Update to version 1.1.4:
What's Changed
* build(deps): bump github.com/helmfile/vals from 0.41.2 to
0.41.3 by @dependabot[bot] in #2100
* build(deps): bump k8s.io/apimachinery from 0.33.2 to 0.33.3
by @dependabot[bot] in #2101
* fix: update Helm version to v3.17.4 in CI and init.go by
@yxxhero in #2102
* build(deps): bump github.com/spf13/pflag from 1.0.6 to 1.0.7
by @dependabot[bot] in #2104
* feat(state): add missingFileHandlerConfig and related logic
by @yxxhero in #2105
* refactor(filesystem): add CopyDir method and optimize Fetch
function by @yxxhero in #2111
* Allow caching of remote files to be disabled by @jess-sol in
#2112
* refactor(yaml): switch yaml library import paths from gopkg.in
to go.yaml.in by @yxxhero in #2114
* build(deps): bump actions/download-artifact from 4 to 5 by
@dependabot[bot] in #2121
* build(deps): bump golang.org/x/term from 0.33.0 to 0.34.0 by
@dependabot[bot] in #2123
- Update to version 1.1.3:
What's Changed
* build: update Helm to v3.18.3 and related dependencies by
@yxxhero in #2082
* Expose release version as .Release.ChartVersion for templating
by @Simske in #2080
* build(deps): bump github.com/helmfile/chartify from 0.24.3 to
0.24.4 by @dependabot[bot] in #2083
* build(deps): bump k8s.io/apimachinery from 0.33.1 to 0.33.2
by @dependabot[bot] in #2086
* build(deps): bump github.com/helmfile/chartify from 0.24.4 to
0.24.5 by @dependabot[bot] in #2087
* build(deps): bump github.com/Masterminds/semver/v3 from 3.3.1
to 3.4.0 by @dependabot[bot] in #2089
* build(deps): bump github.com/hashicorp/hcl/v2 from 2.23.0 to
2.24.0 by @dependabot[bot] in #2092
* build: update Helm and plugin versions to v3.18.4 and v3.12.3
by @yxxhero in #2093
* docs: update status section with May 2025 release information
by @yxxhero in #2096
* build(deps): bump golang.org/x/sync from 0.15.0 to 0.16.0 by
@dependabot[bot] in #2099
* build(deps): bump golang.org/x/term from 0.32.0 to 0.33.0 by
@dependabot[bot] in #2098
- Update to version 1.1.2:
What's Changed
* build(deps): bump github.com/helmfile/chartify from 0.24.2 to
0.24.3 by @dependabot in #2065
* build: update Helm to v3.18.2 and adjust related configurations
by @yxxhero in #2064
* build(deps): bump github.com/helmfile/vals from 0.41.1 to
0.41.2 by @dependabot in #2067
* build(deps): bump golang.org/x/sync from 0.14.0 to 0.15.0
by @dependabot in #2068
* fix-insecure-flag by @anontrex in #2072
* build(deps): bump github.com/cloudflare/circl from 1.4.0 to
1.6.1 by @dependabot in #2074
* fix: update helm-diff to version 3.12.2 in CI and Dockerfiles
by @yxxhero in #2073
* fix: TestToYaml not working with 32-bit architectures by
@ProbstDJakob in #2075
- Update to version 1.1.1:
What's Changed
* Update README.md by @mumoshu in #2046
* build(deps): bump github.com/helmfile/vals from 0.41.0 to
0.41.1 by @dependabot in #2048
* build(helm) update to v3.18.0 by @yxxhero in #2044
* build(deps): bump github.com/helmfile/chartify from 0.23.0 to
0.24.1 by @dependabot in #2049
* build: update Helm and plugin versions in CI and Dockerfiles
by @yxxhero in #2059
- Update to version 1.1.0:
What's Changed
* chore: fix typo in create_test.go by @sadikkuzu in #2025
* build(deps): bump golangci/golangci-lint-action from 7 to 8 by
@dependabot in #2029
* build(deps): bump golang.org/x/sync from 0.13.0 to 0.14.0 by
@dependabot in #2028
* build(deps): bump github.com/helmfile/chartify from 0.22.0 to
0.23.0 by @dependabot in #2027
* chore: remove test data files by @yxxhero in #2026
* build(deps): bump golang.org/x/term from 0.31.0 to 0.32.0 by
@dependabot in #2033
* build(deps): bump github.com/helmfile/vals from 0.40.1 to
0.41.0 by @dependabot in #2032
* build(deps): bump dario.cat/mergo from 1.0.1 to 1.0.2 by
@dependabot in #2035
* feat(tmpl): enhance ToYaml test with multiple scenarios by
@yxxhero in #2031
* [sops, age] update to have SSH key support with sops by
@itscaro in #2036
* feat(yaml): add JSON style encoding option to NewEncoder by
@yxxhero in #2038
* refactor(yaml): upgrade from gopkg.in/yaml.v2 to v3 by @yxxhero
in #2039
* Update readme &amp; documentation with 2025 status of helmfile
project by @zhaque44 in #2040
* build(deps): bump k8s.io/apimachinery from 0.33.0 to 0.33.1 by
@dependabot in #2041
* build(deps): bump github.com/zclconf/go-cty from 1.16.2 to
1.16.3 by @dependabot in #2043
- Update to version 1.0.0:
PLEASE READ
https://github.com/helmfile/helmfile/blob/main/docs/proposals/towards-1.0.md
What's Changed:
* build(deps): bump github.com/helmfile/vals from 0.39.0 to 0.39.1
by @dependabot in #1926
* Bump kubectl to current version (1.32.1) by @DerDaku in #1924
* build(deps): bump github.com/goccy/go-yaml from 1.15.21 to 1.15.22
by @dependabot in #1925
* build: update Helm to v3.17.1 and related dependencies by
@yxxhero in #1928
* build(deps): bump k8s.io/apimachinery from 0.32.1 to 0.32.2 by
@dependabot in #1931
* feat: inject cli state values (--state-values-set) into environment
templating context by @Vince-Chenal in #1917
* docs: add skipSchemaValidation to index.md and update related
structs by @yxxhero in #1935
* refactor(state): optimize HelmState flags handling by @yxxhero
in #1937
* Update vals package to v0.39.2 by @aditmeno in #1938
* build(deps): bump github.com/spf13/cobra from 1.8.1 to 1.9.1 by
@dependabot in #1940
* build(deps): bump github.com/goccy/go-yaml from 1.15.22 to 1.15.23
by @dependabot in #1941
* build(deps): bump github.com/helmfile/chartify from 0.20.8 to
0.20.9 by @dependabot in #1942
* feat: colorized DELETED by @yurrriq in #1944
* feat(docs): add proposal to remove charts and delete subcommands
by @yxxhero in #1936
* build(deps): bump github.com/google/go-cmp from 0.6.0 to 0.7.0
by @dependabot in #1945
* build(deps): bump github.com/go-jose/go-jose/v4 from 4.0.4 to
4.0.5 by @dependabot in #1946
* build: update golang version to 1.24 and golangci-lint to
v1.64.5 by @yxxhero in #1949
* build(deps): bump github.com/helmfile/vals from 0.39.2 to 0.39.3
by @dependabot in #1951
* build(deps): bump github.com/helmfile/chartify from 0.20.9 to
0.21.0 by @dependabot in #1950
* build(deps): bump golang.org/x/sync from 0.11.0 to 0.12.0 by
@dependabot in #1955
* build(deps): bump jinja2 from 3.1.5 to 3.1.6 in /docs by
@dependabot in #1956
* Don't warn if this and the needed release set installed: false
by @jayme-github in #1958
* build(deps): bump golang.org/x/term from 0.29.0 to 0.30.0 by
@dependabot in #1959
* Remove all v0.x references by @yxxhero in #1919
* build(deps): bump k8s.io/apimachinery from 0.32.2 to 0.32.3
by @dependabot in #1960
* build(deps): bump golang.org/x/net from 0.35.0 to 0.36.0 by
@dependabot in #1961
* build(deps): bump github.com/helmfile/vals from 0.39.3 to 0.39.4
by @dependabot in #1962
* build: update Helm to v3.17.2 and related dependencies by
@yxxhero in #1965
* build: update yaml.v3 dependency and remove colega/go-yaml-yaml
by @yxxhero in #1929
* build(deps): bump github.com/containerd/containerd from 1.7.24
to 1.7.27 by @dependabot in #1966
* build(deps): bump github.com/goccy/go-yaml from 1.15.23 to
1.16.0 by @dependabot in #1967
* build(deps): bump github.com/golang-jwt/jwt/v5 from 5.2.1 to
5.2.2 by @dependabot in #1969
* build(deps): bump github.com/golang-jwt/jwt/v4 from 4.5.1 to
4.5.2 by @dependabot in #1970
* build(deps): bump golangci/golangci-lint-action from 6 to 7
by @dependabot in #1975
* build(deps): bump github.com/helmfile/vals from 0.39.4 to
0.40.0 by @dependabot in #1978
* build(deps): bump github.com/helmfile/chartify from 0.21.0 to
0.21.1 by @dependabot in #1979
* docs(fix): correct typo in 'tier=fronted' to 'tier=frontend'
by @yxxhero in #1980
* feat: add labels for helm release by @yxxhero in #1046
* build(deps): bump github.com/helmfile/vals from 0.40.0 to
0.40.1 by @dependabot in #1981
* build(deps): bump github.com/goccy/go-yaml from 1.16.0 to 1.17.1
by @dependabot in #1982
* fix: Check needs with context and namespace by @aarnq in #1986
* build(deps): bump golang.org/x/sync from 0.12.0 to 0.13.0 by
@dependabot in #1991
* build(deps): bump golang.org/x/term from 0.30.0 to 0.31.0 by
@dependabot in #1990
* fix(state): enhance error message for missing .gotmpl extension
in helmfile v1 by @yxxhero in #1989
* build(deps): bump github.com/helmfile/chartify from 0.21.1 to
0.22.0 by @dependabot in #1996
* build: update Helm plugin versions in CI and Dockerfiles by
@yxxhero in #1995
* build: update Helm to v3.17.3 and update related Dockerfiles
by @yxxhero in #1993
* build(deps): bump golang.org/x/net from 0.37.0 to 0.38.0 by
@dependabot in #2010
* feat: add helmfile archive configuration in goreleaser by
@yxxhero in #2000
* docs: add more complex examples section in README by @yxxhero
in #2013
* Feat: setting reuseValues flag in release by @blaskoa in #2004
* build(deps): bump k8s.io/apimachinery from 0.32.3 to 0.32.4 by
@dependabot in #2016
* build(deps): bump github.com/aws/aws-sdk-go from 1.55.6 to
1.55.7 by @dependabot in #2015
* chore: support parsing any type with fromYaml by @ProbstDJakob
in #2017
* build(deps): bump k8s.io/apimachinery from 0.32.4 to 0.33.0 by
@dependabot in #2018
* feat: add --take-ownership flag to helm diff and related config
by @yxxhero in #1992
- Update to version 0.171.0:
* feat: execute templates against postRendererHooks by @allanger
in #1839
* build(deps): bump github.com/spf13/pflag from 1.0.5 to 1.0.6
by @dependabot in #1897
* build(deps): bump github.com/goccy/go-yaml from 1.15.15 to
1.15.16 by @dependabot in #1901
* build(deps): bump github.com/goccy/go-yaml from 1.15.16 to
1.15.17 by @dependabot in #1905
* Use a regex to match --state-values-set-string arguments
by @gllb in #1902
* build(deps): bump golang.org/x/sync from 0.10.0 to 0.11.0
by @dependabot in #1911
* Chartify v0.20.8 update by @scodeman in #1908
* cleanup: remove all about v0.x by @yxxhero in #1903
* build(deps): bump golang.org/x/term from 0.28.0 to 0.29.0
by @dependabot in #1913
* chore: update babel to resolve CVEs by @zhaque44 in #1916
* remove deprecated charts.yaml by @yxxhero in #1437
* Revert "cleanup: remove all about v0.x" by @yxxhero in #1918
* build(deps): bump github.com/goccy/go-yaml from 1.15.17 to
1.15.19 by @dependabot in #1920
* build(deps): bump github.com/goccy/go-yaml from 1.15.19 to
1.15.20 by @dependabot in #1921
* feat: Add support for --wait-retries flag. by @connyay in #1922
* build: update go-yaml to v1.15.21 by @yxxhero in #1923
- Update to version 0.170.1:
* build(deps): bump github.com/goccy/go-yaml from 1.15.14 to
1.15.15 by @dependabot in #1882
* build(deps): bump github.com/hashicorp/go-slug from 0.15.0 to
0.16.3 by @dependabot in #1886 (CVE-2025-0377)
* Ensure 'helm repo add' is also not pollute on helmfile template
by @baurmatt in #1887
* build(deps): bump github.com/zclconf/go-cty from 1.16.1 to
1.16.2 by @dependabot in #1888
* fix: using correct option for takeOwnership flag by @blaskoa
in #1892
* fix typo in docs by @adamab48 in #1889
- Update to version 0.170.0:
* build(deps): bump github.com/goccy/go-yaml from 1.15.6 to 1.15.7
by @dependabot in #1818
* build(deps): bump golang.org/x/term from 0.26.0 to 0.27.0 by
@dependabot in #1817
* chore(doc): fix the indent of the selector usage sample yaml by
@Ladicle in #1819
* feat(state): add support for setString in ReleaseSpec and
HelmState by @yxxhero in #1821
* build(deps): bump github.com/goccy/go-yaml from 1.15.7 to 1.15.8
by @dependabot in #1822
* test(state): add TestHelmState_setStringFlags for setStringFlags
method by @yxxhero in #1823
* build(deps): bump k8s.io/apimachinery from 0.31.3 to 0.31.4 by
@dependabot in #1826
* build(deps): bump golang.org/x/crypto from 0.29.0 to 0.31.0 by
@dependabot in #1828
* build(deps): bump github.com/goccy/go-yaml from 1.15.8 to
1.15.9 by @dependabot in #1831
* build(deps): bump k8s.io/apimachinery from 0.31.4 to 0.32.0 by
@dependabot in #1830
* feat: updating sops version to 3.9.2 by @zhaque44 in #1834
* build(deps): bump github.com/goccy/go-yaml from 1.15.9 to
1.15.10 by @dependabot in #1835
* build(deps): bump helm.sh/helm/v3 from 3.16.3 to 3.16.4 by
@dependabot in #1836
* build: update Helm version to v3.16.4 in CI and Dockerfiles by
@yxxhero in #1837
* build(deps): bump github.com/goccy/go-yaml from 1.15.10 to
1.15.11 by @dependabot in #1838
* build(deps): bump filippo.io/age from 1.2.0 to 1.2.1 by
@dependabot in #1840
* build(deps): bump github.com/goccy/go-yaml from 1.15.11 to
1.15.12 by @dependabot in #1843
* build: update helm-diff to v3.9.13 in Dockerfiles and init.go
by @yxxhero in #1841
* build(deps): bump github.com/helmfile/chartify from 0.20.4 to
0.20.5 by @dependabot in #1845
* build(deps): bump github.com/goccy/go-yaml from 1.15.12 to
1.15.13 by @dependabot in #1844
* build(deps): bump jinja2 from 3.1.4 to 3.1.5 in /docs by
@dependabot in #1846
* CVE-2024-45338: updating golang.org/x/net: to version: v0.33.0
by @zhaque44 in #1849
* build(deps): bump github.com/zclconf/go-cty from 1.15.1 to
1.16.0 by @dependabot in #1851
* build(deps): bump golang.org/x/term from 0.27.0 to 0.28.0
by @dependabot in #1852
* update sops versions to 3.9.3 by @zhaque44 in #1861
* build(deps): bump github.com/hashicorp/go-getter from 1.7.6
to 1.7.7 by @dependabot in #1862
* feat: add --take-ownership flag to apply and sync commands by
@yxxhero in #1863
* fix: ensure plain http is supported across all helmfile
commands by @purpleclay in #1858
* fix: ensure development versions of charts can be used across
helmfile commands by @purpleclay in #1865
* build(deps): bump github.com/helmfile/chartify from 0.20.5 to
0.20.6 by @dependabot in #1866
* update kubectl version (1.30) to stay up to date with new
releases by @zhaque44 in #1867
* build(deps): bump github.com/zclconf/go-cty from 1.16.0 to
1.16.1 by @dependabot in #1870
* build(deps): bump github.com/hashicorp/go-getter from 1.7.7 to
1.7.8 by @dependabot in #1869
* feat: Add "--no-hooks" to helmfile template by @jwlai in #1813
* update helm and k8s versions in ci, dockerfiles, and go.mod by
@yxxhero in #1872
* build(deps): bump github.com/helmfile/vals from 0.38.0 to 0.39.0
by @dependabot in #1876
* build(deps): bump k8s.io/apimachinery from 0.32.0 to 0.32.1 by
@dependabot in #1873
* build(deps): bump github.com/goccy/go-yaml from 1.15.13 to
1.15.14 by @dependabot in #1874
* build: update helm-diff to v3.9.14 in Dockerfiles and init.go
by @yxxhero in #1877
- Update to version 0.169.2:
* build(deps): bump github.com/helmfile/vals from 0.37.6 to 0.37.7
by @dependabot in #1747
* build(deps): bump k8s.io/apimachinery from 0.31.1 to 0.31.2 by
@dependabot in #1754
* Reset extra args before running 'dependency build' by @baurmatt
in #1751
* Introducing Helmfile Guru on Gurubase.io by @kursataktas in #1748
* feat: add skip json schema validation during the install /upgrade
of a Chart by @zhaque44 in #1737
* fix(maputil): prevent nil value overwrite by @ban11111 in #1755
* build(deps): bump github.com/goccy/go-yaml from 1.12.0 to
1.13.0 by @dependabot in #1759
* fix: this url doesn't work anymore by @zekena2 in #1760
* build(deps): bump github.com/goccy/go-yaml from 1.13.0 to
1.13.1 by @dependabot in #1762
* build(deps): bump github.com/goccy/go-yaml from 1.13.1 to
1.13.2 by @dependabot in #1763
* build(deps): bump github.com/golang-jwt/jwt/v4 from 4.5.0 to
4.5.1 by @dependabot in #1767
* build(deps): bump github.com/helmfile/vals from 0.37.7 to
0.37.8 by @dependabot in #1764
* build(deps): bump github.com/goccy/go-yaml from 1.13.2 to
1.13.4 by @dependabot in #1765
* fix(integration-tests): read correct minikube status (#1768)
by @ceriath in #1769
* build(deps): bump github.com/goccy/go-yaml from 1.13.4 to
1.13.5 by @dependabot in #1770
* Add integration tests for #1749 by @baurmatt in #1766
* fix: update acme chart URL in input.yaml by @yxxhero in #1773
* build(deps): bump github.com/goccy/go-yaml from 1.13.5 to
1.13.6 by @dependabot in #1771
* build(deps): bump golang.org/x/sync from 0.8.0 to 0.9.0 by
@dependabot in #1775
* build(deps): bump golang.org/x/term from 0.25.0 to 0.26.0
by @dependabot in #1774
* Revive dead badge links by @eggplants in #1776
* feat: refactor label creation in state.go by @yxxhero in #1758
* docs: Add Gurubase badge to README-zh_CN by @yxxhero in #1777
* build(deps): bump github.com/goccy/go-yaml from 1.13.6 to
1.13.9 by @dependabot in #1781
* build(deps): bump github.com/goccy/go-yaml from 1.13.9 to
1.14.0 by @dependabot in #1782
* build(deps): bump github.com/goccy/go-yaml from 1.14.0 to
1.14.3 by @dependabot in #1788
* build(deps): bump helm.sh/helm/v3 from 3.16.2 to 3.16.3 by
@dependabot in #1786
* fix: update helm-diff to version 3.9.12 in CI and Dockerfiles
by @yxxhero in #1792
* build: update Helm version to v3.16.3 in CI and Dockerfiles
by @yxxhero in #1791
* feat: add HELMFILE_INTERACTIVE env var to enable interactive
mode by @thevops in #1787
* build(deps): bump github.com/hashicorp/hcl/v2 from 2.22.0 to
2.23.0 by @dependabot in #1793
* build(deps): bump github.com/Masterminds/semver/v3 from 3.3.0
to 3.3.1 by @dependabot in #1795
* chore: update with testify/assert assertion and table driven
tests for fs.go by @zhaque44 in #1794
* build(deps): bump k8s.io/apimachinery from 0.31.2 to 0.31.3
by @dependabot in #1798
* build(deps): bump github.com/stretchr/testify from 1.9.0 to
1.10.0 by @dependabot in #1800
* build(deps): bump github.com/goccy/go-yaml from 1.14.3 to
1.15.0 by @dependabot in #1804
* build(deps): bump github.com/goccy/go-yaml from 1.15.0 to
1.15.1 by @dependabot in #1807
* build(deps): bump github.com/zclconf/go-cty from 1.15.0 to
1.15.1 by @dependabot in #1806
* update example chart URL in remote-secrets doc by @daveneeley
in #1809
* build(deps): bump github.com/goccy/go-yaml from 1.15.1 to
1.15.3 by @dependabot in #1811
* build(deps): bump github.com/goccy/go-yaml from 1.15.3 to
1.15.6 by @dependabot in #1812
* fix: inject global values in Chartify by @xabufr in #1805
* build(deps): bump github.com/helmfile/vals from 0.37.8 to
0.38.0 by @dependabot in #1814
* build(deps): bump github.com/helmfile/chartify from 0.20.3 to
0.20.4 by @dependabot in #1815
* build(deps): bump golang.org/x/sync from 0.9.0 to 0.10.0 by
@dependabot in #1816
- Update to version 0.169.1:
* feat: update sops version to 3.9.1 by @zhaque44 in #1742
* chore: improve test assertions and descriptions for file
download test by @zhaque44 in #1745
* feat: add 'hide-notes' flag to helm in sync and apply commands
by @yxxhero in #1746
</description>
<package>helmfile</package>
</patchinfo>

View File

@@ -1,16 +0,0 @@
<patchinfo incident="packagehub-28">
<packager>adrianSuSE</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for product-composer</summary>
<description>This update for product-composer fixes the following issues:
Changes in product-composer:
Update to version 0.6.18:
- Fix filtering of not used rpms in updateinfo
</description>
<package>product-composer</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,140 +0,0 @@
<patchinfo incident="packagehub-29">
<packager>mgorse</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for gramps</summary>
<description>This update for gramps fixes the following issues:
Changes in gramps:
Update to version 6.0.3:
* Revert “Pass an object rather than a handle to the note editor callback”.
Fixes #13884.
* Update translations.
Update to version 6.0.2;
* Fix date modifiers for lt.
* Update translation template for new release.
* Add optimization to HasIdOf rules.
* Connect the Help button in the repository reference editor. Fixes #13352.
* Pass an object rather than a handle to the note editor callback. Fixes
#13702.
* Fix broken compound dates with bce year in XML import. Fixes #13631.
* Avoid multiple copies of Rules after Plugin manager reload. Fixes #13844.
* Fix bad surname list after upgrade from bsddb. Fixes #13807.
* Fix narrated web when two places have same name but a different type. Fixes
#13841.
* Fix crash in citation view due to wrong filter_info. Fixes #13796.
* Dont attempt to call set_orientation if self.pui is None. Fixes #13820.
* Dont crash in search_changed if self.search_list has no active item. Fixes
#13793.
* Fix incorrect addons project after upgrade from Gramps 5.2. Fixes #13789.
* Respect user choice of CSS files for existing narrated web site. Fixes
#13792.
* Ensure that the spell checker gets removed with the editor. Fixes #13795.
* Fix Optimizer class when combining sub-filters. Fixes #13799.
* Remove check for Gtk translations in Snap packages.
* Update translations.
Update to version 6.0.1:
* Update translations: ar, br, ca, cs, de, de_AT, el, en_GB, es, fi, fr, ga,
he, it, ja, ko, nb, nl, pl, pt_PT, ro, sk, sv, tr, uk, zh_CN.
* Update translation template for new release.
* Extend SearchBar so that it supports text search and filters. Fixes #13720.
* Fix patronymic in name display. Fixes #13764.
* Update links in the README to v6.0.
* Update the INSTALL file. Issue #13717.
+ Change install from setup.py to pip.
+ Update typical installation locations.
+ Remove the --resourcepath option which no longer exists.
* Fix wiki help link in the Addon Manager. Fixes #13735.
* Remove the outer progress meter from the filter prepare phase. Fixes #13725.
* Fix error when importing a GEDCOM file into an existing tree. Fixes #13726.
* Avoid empty metadata fields. Fixes #13721.
* Update Italian date modifiers.
Update to version 6.0.0:
* Full changelog available at
https://gramps-project.org/blog/2025/03/gramps-6-0-0-released/
* Reports
+ The narrative web report has four main improvements:
- New indexes for big databases.
- Add heatmap.
- Improve language and hamburger menus.
- Show other roles for an event.
+ Other report changes:
- Add gender symbol option to the detailed descendant, detailed ancestral
and descendant report.
- Add Gramps ID option to Kinship Report.
- Tree reports convert images to thumbnails for embedding. This allows
cropped rectangles selected in the media references to be displayed.
- Report options are now memorised on a per family tree (database) level.
* Gramplets
+ Improvements to the backlinks (References) gramplets:
+ Allow an object to be made active from within the backlinks gramplet.
+ Add a context menu to make “Edit” and “Make Active” more discoverable.
+ Allow objects in the backlinks gramplets to be dragged to the clipboard.
+ Add edit capability to the notes gramplets.
+ Enhanced version of the Filter gramplet.
* Selector dialogs
+ A standard search bar has been added to the person selector dialog. It
may default to selecting men or women by default, but selecting on other
columns is possible.
+ It is now possible to select multiple media objects in the media selector
and gallery tabs.
+ The media selector has a new path column.
* Other changes
+ Improvements to the Probably Alive code.
+ New rules: “Has Event”, “Has Source” and “Having Note of Type”.
+ New Gedcom 7.0 event roles: “Father”, Mother”, “Parent”, “Child”, “Multiple”, Friend”, “Neighbour” and “Officiator”.
+ Allow web-accessible file references in media objects.
+ Add a preference option for the selection of the toolbar style.
+ Enhancements to the help display. This is ongoing though.
+ Enable Web Connection menu in all list views.
Update to version 5.2.4:
* Fix Citations gramplet to recognize event reference citations. Fixes #13555.
* Fix exception when finding relationship to home person. Fixes #13495.
* Fix mouse scroll direction in pedigree view.
* Fix incorrect usage of exec. As of PEP558, locals() is not populated by
exec(). This change means that this call is broken on Python 3.13.
* Remove some usage of globals().
* Remove unnecessary use of exec.
* Test current_date being an empty date in probably alive function. Fixes #13431.
* Improve warning message in date_test.py when 3 tests are skipped.
* Correctly assign sortval = 0 when a date is EMPTY. Fixes #13415, #13423.
* Fix unicode conversion bug when upgrading from schema 16 to 17.
* Correct the documentation for the match() method of the Date class. Also
added more detail to documentation in 3 other cases. Fixes #13428.
* Gramps version output now reports OS rather than Platform. Fixes #12285.
* Downgrade upgrade messages from warning to informational level. Fixes #13464.
* Fix list size option in the top surnames gramplet. Allow users to specify
how many surnames appear in the list from 10 to 1000. Fixes #13448.
* Correct misleading description of GUI element placement.
* Use the preferred calendar for new dates only in the date editor. Fixes #13403.
* Fix docs typo in INSTALL file.
* Fix printing of Books. Fixes #12804.
* Render reports with styled notes containing subscript and strikethrough. Fixes #13417.
* Remove broken link to svn2cl package in the About dialog. Fixes #13152.
* Improve media performance in the narrative web report. Fixes #13370.
* Updated translations.
</description>
<package>gramps</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,16 +0,0 @@
<patchinfo incident="packagehub-22">
<packager>AndreasStieger</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for certbot</summary>
<description>This update for certbot fixes the following issues:
This update adds the certbot stack. (python modules: ConfigArgParse, acme, certbot, certbot-nginx, josepy, pyRFC3339).
</description>
<package>python-ConfigArgParse</package>
<package>python-acme</package>
<package>python-certbot</package>
<package>python-certbot-nginx</package>
<package>python-josepy</package>
<package>python-pyRFC3339</package>
</patchinfo>

View File

@@ -1,236 +0,0 @@
<patchinfo incident="packagehub-81">
<issue tracker="bnc" id="1250499">VUL-0: CVE-2025-10924: gimp: GIMP FF File Parsing Integer Overflow Remote Code Execution Vulnerability</issue>
<issue tracker="bnc" id="1250497">VUL-0: CVE-2025-10922: gimp: GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability</issue>
<issue tracker="cve" id="2025-10922">VUL-0: CVE-2025-10922: gimp: GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability</issue>
<issue tracker="cve" id="2025-2760">VUL-0: CVE-2025-2760: gimp: integer overflow may lead to remote code execution</issue>
<issue tracker="bnc" id="1250501">VUL-0: CVE-2025-10925: gimp: GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability</issue>
<issue tracker="bnc" id="1241690">VUL-0: CVE-2025-2760: gimp: integer overflow may lead to remote code execution</issue>
<issue tracker="bnc" id="1250495">VUL-0: CVE-2025-10920: gimp: GIMP ICNS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability</issue>
<issue tracker="cve" id="2025-10920">VUL-0: CVE-2025-10920: gimp: GIMP ICNS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability</issue>
<issue tracker="cve" id="2025-10924">VUL-0: CVE-2025-10924: gimp: GIMP FF File Parsing Integer Overflow Remote Code Execution Vulnerability</issue>
<issue tracker="cve" id="2025-10925">VUL-0: CVE-2025-10925: gimp: GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability</issue>
<packager>mgorse</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for gimp</summary>
<description>This update for gimp fixes the following issues:
Changes in gimp:
Update to 3.0.6:
- Security:
- During development, we received reports from the Zero Day
Initiative of potential security issues with some of our file
import plug-ins. While these issues are very unlikely to
occur with real files, developers like Jacob Boerema and Alx
Sa proactively improved security for those imports.
The resolved reports are:
- ZDI-CAN-27793
- ZDI-CAN-27823
- ZDI-CAN-27836
- ZDI-CAN-27878
- ZDI-CAN-27863
- ZDI-CAN-27684
- Core:
- Many false-positive build warnings have been cleaned out (and
proper issues fixed).
- Various crashes fixed.
- When creating a layer mask from the layer's alpha, but the
layer has no alpha, simply fill the mask with complete
opacity instead of a completely transparent layer.
- Various core infrastructure code reviewed, cleaned up,
refactored and improved, in drawable, layer and filter
handling code, tree view code, and more.
- GIMP_ICONS_LIKE_A_BOSS environment variable is not working
anymore (because "gtk-menu-images" and "gtk-button-images"
have been deprecated in GTK3 and removed in GTK4) and was
therefore removed.
- Lock Content now shows as an undo step.
- Add alpha channel for certain transforms.
- Add alpha channel on filter merge, when necessary.
- Filters can now be applied non-destructively on channels.
- Improved Photoshop brush support.
- After deleting a palette entry, the next entry is
automatically selected. This allows easily deleting several
entries in a row, among other usage.
- Resize image to layers irrespective to selections.
- Improved in-GUI release notes' demo script language:
- We can now set a button value to click it: "toolbox:text,
tool-options:outline=1, tool-options:outline-direction"
- Color selector's module names can be used as identifiers:
"color-editor,color-editor:CMYK=1,color-editor:total-ink-coverage"
- Fixed Alpha to Selection on single layers with no
transparency.
- Various code is slowly ported to newer code, preparing for
GTK4 port (in an unplanned future step):
- Using g_set_str() (optionally redefining it in our core
code to avoid bumping the GLib minimum requirement).
- Start using GListModel in various pieces of code, in
particular getting rid of more and more usage of
GtkTreeView when possible (as it will be deprecated with
GTK4).
- New GimpRow class for all future row widgets.
- Use more of G_DECLARE_DERIVABLE_TYPE and
G_DECLARE_FINAL_TYPE where relevant.
- New GimpContainerListView using a GtkListBox.
- New GimpRowSeparator, GimpRowSettings, GimpRowFilter and
GimpRowDrawableFilter widgets.
- (Experimental) GEX Format was updated.
- Palette import:
- Set alpha value for image palette imports.
- Fix Lab &amp; CMYK ACB palette import.
- Add palette format filters to import dialog, making it more
apparent what palette formats are supported, and giving the
ability to hide irrelevant files.
- Improved filter actions' sensitivity to make sure they are
set insensitive when relevant. In particular filters which
cannot be run non-destructively (e.g. filters with aux
inputs, non-interactive filters and GEGL Graph) must be
insensitive when trying to run them on group layers.
- Fix bad axis centering on zoom out.
- Export better SVG when exporting paths.
- Tools:
- Text tool: make sure the default color is only changed when
the user confirms the color change.
- Foreground Selection tool: do not create a selection when no
strokes has been made. In particular this removes the
unnecessary delay which happened when switching to another
tool without actually stroking anything.
- All Transform tools: transform boundaries for preview is now
multi-layers aware.
- (Experimental) Seamless Clone tool: made to work again,
though it is still too slow to get out of Playground.
- Graphical User Interface:
- Various improvements to window management:
- Keep-Above windows are set with the Utility hint.
- Utility windows are not made transient to a parent.
- Transient factory dialogs follow the active display,
ensuring that new image windows would not hide your toolbox
and dock windows.
- Various CSS improvements for styling of the interface. Some
theme leaks were also fixed.
- New toggle button in Brushes and Fonts dockable, allowing
brush and font previews to optionally follow the color theme.
For instance, when using a dark theme, the brush and font
previews could be drawn on the theme background, using the
theme foreground colors. By default, these data previews are
still drawn as black on white.
- Palette grid is now drawn with the theme's background color.
- Consistent naming patterns on human-facing options (first
word only capitalized).
- About dialog:
- We will now display the date and time of the last check in
a "Up to date as of &lt;date&gt; at &lt;time&gt;" string, differing
from the "Last checked on &lt;date&gt; at &lt;time&gt;" string. The
former will be used to indicate that GIMP is indeed
up-to-date whereas the latter when a new version was
released and that you should update.
- We now respect the system time/date format on macOS and
Windows.
- The search popup won't pop up without an image.
- Better zoom step algorithm for data previews in container
popup (e.g. the brush popup in paint Tool Options).
- Disable animation in the Input Controller, Preferences and
Welcome dialogs for stack transition when animation are
disabled in system settings.
- Fixed crosshair hotspot on Windows (crosshair cursor for
brushes was offset with a non-100% display scale factor).
- Debug/CRITICAL dialog:
- Make sure it is non-modal.
- Follow the theme mode under Windows.
- While loading images, all widgets in the file dialog are made
insensitive, except for the Cancel button and the progress
bar.
- Both grid and list views can now zoom via scroll and zoom
gestures (it used to only work in list views).
- Pop an error message up on startup when GIO modules to read
HTTPS links are not found and that we therefore fail to load
the remote gimp_versions.json file. With the AppImage package
in particular, we depend on an environment daemon which
cannot be shipped in the package. So the next best thing is
to warn people and tell them what they should install to get
version checks.
- Welcome dialog:
- The "Community Tutorials" link is now shown after the
"Documentation" link.
- The "Learn more" link in Release Notes tab leads to the
actual release news for this version.
- Plug-ins:
- PDF export: do not draw disabled layer masks.
- Jigsaw: the plug-in can now draw on transparent layers.
- Various file format fixes and improvements: JPEG 2000 import,
TIFF import, DDS import, SVG import, PSP import, FITS export,
ICNS import, Dicom import, WBMP import, Farbfeld import, XWD
import, ILBM import.
- Sphere Designer: use spin scale instead of spin entries (the
latter is unusable with little horizontal space).
- Animation Play: frames are shown again in the playback
progress bar.
- Vala Goat Exercise: ignoring C warning in this Vala plug-in
as it is generated code and we cannot control it.
- file-gih: brush pipe selection modes now have nice,
translatable names.
- Metadata viewer: port from GtkTreeView to GtkListBox.
- File Raw Data: reduce Raw Data load dialogue height by moving
to a 2-column layout.
- SVG import: it is now possible to break aspect ratio with
specific width/height arguments, when calling the PDB
procedure non-interactively (from other plug-ins).
- Print: when run through a portal print dialog, the "Image
Settings" will be exposed as a secondary dialog, outputted
after the portal dialog, instead of a tab on the main print
dialog (because it is not possible to tweak the print dialog
when it is created by a portal). This will bring back usable
workflow of printing with GIMP when run in a sandbox (e.g.
Flatpak or Snap).
- Recompose: fixed for YCbCr decomposed images.
- Fixed vulnerabilities: ZDI-CAN-27684, ZDI-CAN-27863,
ZDI-CAN-27878, ZDI-CAN-27836, ZDI-CAN-27823, ZDI-CAN-27793.
- C Source and HTML export can now be run non-interactively too
(e.g. from other plug-ins).
- Map Object: fix missing spin boxes.
- Small Tiles: fix display lag.
- CVE-2025-10925: Fix GIMP ILBM file parsing stack-based buffer overflow remote code
execution vulnerability. (ZDI-25-914, ZDI-CAN-27793, bsc#1250501)
- CVE-2025-10922: Fix GIMP DCM file parsing heap-based buffer overflow remote code
execution vulnerability. (ZDI-25-911, ZDI-CAN-27863, bsc#1250497)
- CVE-2025-10920: Prevent overflow attack by checking if output &gt;= max, not just
output &gt; max. (ZDI-25-909, ZDI-CAN-27684, bsc#1250495)
- CVE-2025-10924: Fix integer overflow while parsing FF files. (bsc#1250499)
- CVE-2025-2760: A vulnerability allows remote attackers to execute arbitrary
code on affected installations of GIMP. The specific flaw exists
within parsing of XWD files. An integer overflow happens before
allocating a buffer. This fixed in GIMP 3.0.0.
https://www.gimp.org/news/2025/03/16/gimp-3-0-released
(bsc#1241690)
</description>
<package>gimp</package>
</patchinfo>

View File

@@ -1,15 +0,0 @@
<patchinfo incident="packagehub-36">
<issue tracker="bnc" id="1252722">Evolution crashes when opening JPEG attachments after webkit2gtk3 security update</issue>
<packager>mgorse</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for evolution</summary>
<description>This update for evolution fixes the following issues:
Changes in evolution:
- Fix JavaScript dictionary objects creation. Needed for WebKitGTK &gt;= 2.50
(bsc#1252722 glgo#GNOME/evolution#3124).
</description>
<package>evolution</package>
</patchinfo>

View File

@@ -1,31 +0,0 @@
<patchinfo incident="packagehub-23">
<issue tracker="bnc" id="1238516">quilt: cannot refresh patches for non-x86 code</issue>
<issue tracker="bnc" id="1236907">rpm,quilt: update to rpm 4.20 breaks many "quilt setup" invocations</issue>
<packager>jdelvare</packager>
<rating>important</rating>
<category>recommended</category>
<summary>Recommended update for quilt</summary>
<description>This update for quilt fixes the following issues:
Changes in quilt:
Update to version 0.69:
* Fix escaping of % and backslash in patch names
* new: Stop claiming support of option -p ab
* patches: Several performance optimizations
* series: Simplify the code
- Make it possible to run "quilt setup" on a spec file which excludes the local
architecture (boo#1238516).
- Fix building noarch packages with rpm &gt;= 4.20 (boo#1236907).
- Make it possible to preprocess spec files which do not comply with the standard. Most
notably multibuild OBS spec files need to be preprocessed. Use
option "--spec-filter=obs" for these (boo#1236907).
- Detect the change of build root path hierarchy introduced by rpm 4.20 (boo#1236907).
- Install the bash completion file to the right directory (reported
by rpmlint).
</description>
<package>quilt</package>
</patchinfo>

Some files were not shown because too many files have changed in this diff Show More