commit evince for openSUSE:Factory
Hello community, here is the log from the commit of package evince for openSUSE:Factory checked in at 2017-07-28 09:43:34 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/evince (Old) and /work/SRC/openSUSE:Factory/.evince.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Package is "evince" Fri Jul 28 09:43:34 2017 rev:126 rq:512328 version:3.24.1 Changes: -------- --- /work/SRC/openSUSE:Factory/evince/evince.changes 2017-07-17 08:59:54.083054587 +0200 +++ /work/SRC/openSUSE:Factory/.evince.new/evince.changes 2017-07-28 09:44:16.112779566 +0200 @@ -1,0 +2,22 @@ +Sat Jul 22 08:34:24 UTC 2017 - zaitor@opensuse.org + +- Update to version 3.24.1: + + Remove support for tar and tar-like commands in commics backend + (CVE-2017-1000083, bgo#784630). + + Improve performance of the links sidebar (bgo#779614). + + Improve performance of scrolling in thumbnails sidebar + (bgo#691448). + + Don't copy remote files before thumbnailing (bgo#780351). + + Fix toggling layers that are not in the current visible range + of pages (bgo#780139). + + Fix ev_page_accessible_get_range_for_boundary() to ensure the + start and end offsets it returns are within the allowed range + (bgo#777992). + + Fix crash with Orca screen reader (bgo#777992). + + Updated translations. +- Drop evince-comics-remove-tar-commands-support.patch: Fixed + upstream. +- Following the above: Drop libtool BuildRequires and stop passing + autoreconf, no longer needed as we do not carry any patches. + +------------------------------------------------------------------- Old: ---- evince-3.24.0.tar.xz evince-comics-remove-tar-commands-support.patch New: ---- evince-3.24.1.tar.xz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ evince.spec ++++++ --- /var/tmp/diff_new_pack.8CrzPL/_old 2017-07-28 09:44:16.708695633 +0200 +++ /var/tmp/diff_new_pack.8CrzPL/_new 2017-07-28 09:44:16.716694507 +0200 @@ -19,23 +19,19 @@ %define _major_version 3.0 %define pluginAPI 4 Name: evince -Version: 3.24.0 +Version: 3.24.1 Release: 0 Summary: GNOME Document Viewer License: GPL-2.0+ Group: Productivity/Office/Other Url: http://www.gnome.org/projects/evince/ Source: http://download.gnome.org/sources/evince/3.24/%{name}-%{version}.tar.xz -# PATCH-FIX-UPSTREAM evince-comics-remove-tar-commands-support.patch bnc#1046856 bgo#784630 CVE-2017-1000083 aplazas@suse.com -- Avoid code execution in the comic book backend's .tar support. -Patch1: evince-comics-remove-tar-commands-support.patch BuildRequires: fdupes BuildRequires: gcc-c++ BuildRequires: ghostscript-fonts-std BuildRequires: ghostscript-x11 BuildRequires: intltool BuildRequires: libtiff-devel -# Needed by Patch1 -BuildRequires: libtool BuildRequires: texlive-devel %if !0%{?is_opensuse} BuildRequires: translation-update-upstream @@ -217,11 +213,8 @@ %if !0%{?is_opensuse} translation-update-upstream %endif -%patch1 -p1 %build -# Needed by Patch1 as it changes configure.ac. -autoreconf -f -i # on openSUSE, we share the browser plugins between browsers; do not use mozilla's default. export BROWSER_PLUGIN_DIR=%{_libdir}/browser-plugins %configure --disable-static --with-pic\ ++++++ evince-3.24.0.tar.xz -> evince-3.24.1.tar.xz ++++++ ++++ 7219 lines of diff (skipped)
participants (1)
-
root@hilbert.suse.de