From 246a8799b3c8832aad95ffe0d64481e868bf3b6f0ead2d1806d5da97f1f34ec2 Mon Sep 17 00:00:00 2001 From: Matej Cepl Date: Sun, 24 Mar 2024 07:52:22 +0000 Subject: [PATCH] - Add reference to CVE-2024-0450 (bsc#1221854) to changelog. other entry or central directory (bsc#1221854, CVE-2024-0450). OBS-URL: https://build.opensuse.org/package/show/devel:languages:python:Factory/python311?expand=0&rev=117 --- python311.changes | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/python311.changes b/python311.changes index 7a649e7..25fb86c 100644 --- a/python311.changes +++ b/python311.changes @@ -1,3 +1,8 @@ +------------------------------------------------------------------- +Sun Mar 24 07:51:45 UTC 2024 - Matej Cepl + +- Add reference to CVE-2024-0450 (bsc#1221854) to changelog. + ------------------------------------------------------------------- Fri Mar 22 21:22:27 UTC 2024 - Matej Cepl @@ -202,7 +207,7 @@ Thu Feb 8 07:27:40 UTC 2024 - Daniel Garcia tkinter._test(). - gh-109858: Protect zipfile from “quoted-overlap” zipbomb. It now raises BadZipFile when try to read an entry that overlaps with - other entry or central directory. + other entry or central directory (bsc#1221854, CVE-2024-0450). - gh-38807: Fix race condition in trace. Instead of checking if a directory exists and creating it, directly call os.makedirs() with the kwarg exist_ok=True.