Removed rpms ============ Added rpms ========== - oxygen5-sounds Package Source Changes ====================== ImageMagick + fix CVE-2023-1289 [bsc#1209141], segmentation fault and possible DoS via specially crafted SVG + + ImageMagick-CVE-2023-1289.patch + +- security update +- added patches MozillaThunderbird +- Mozilla Thunderbird 102.9.1 + * fixed: Thunderbird was unable to open file URLs from command + line (URLs beginning with "file://") (bmo#1816343) + * fixed: Source strings for localized builds not uploaded to + FTP as expected (bmo#1817086) + * fixed: Visual and theme improvements + (bmo#1821358,bmo#1822286) + * fixed: Security fixes + MFSA 2023-12 (bsc#1209953) + * CVE-2023-28427 (bmo#1822595) + Matrix SDK bundled with Thunderbird vulnerable to denial-of- + service attack + +- Mozilla Thunderbird 102.9 + * fixed: Notification about a sender's changed OpenPGP key was + not immediately visible (bmo#1814003) + * fixed: TLS Certificate Override dialog did not appear when + retrieving messages via IMAP using "Get Messages" context + menu (bmo#1816596) + * fixed: Spellcheck dictionaries were missing from localized + Thunderbird builds that should have included them + (bmo#1818257) + * fixed: Tooltips for "Show/Hide" calendar toggle did not + display (bmo#1809557) + * fixed: Various security fixes + MFSA 2023-11 (bsc#1209173) + * CVE-2023-25751 (bmo#1814899) + Incorrect code generation during JIT compilation + * CVE-2023-28164 (bmo#1809122) + URL being dragged from a removed cross-origin iframe into the + same tab triggered navigation + * CVE-2023-28162 (bmo#1811327) + Invalid downcast in Worklets + * CVE-2023-25752 (bmo#1811627) + Potential out-of-bounds when accessing throttled streams + * CVE-2023-28163 (bmo#1817768) + Windows Save As dialog resolved environment variables + * CVE-2023-28176 (bmo#1808352, bmo#1811637, bmo#1815904, + bmo#1817442, bmo#1818674) + Memory safety bugs fixed in Thunderbird 102.9 + bind +- Update to release 9.16.38 + Bug Fixes: + * A constant stream of zone additions and deletions via rndc + reconfig could cause increased memory consumption due to + delayed cleaning of view memory. This has been fixed. + * The speed of the message digest algorithms (MD5, SHA-1, SHA-2), + and of NSEC3 hashing, has been improved. + * Building BIND 9 failed when the --enable-dnsrps switch for + ./configure was used. This has been fixed. + [jsc#SLE-24600] +- Updated keyring and signature + bluedevil5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + blueman +- Update to version 2.3.5: + * Right click menu was pointing to the wrong list row + * Double click to connect +- Changes from version 2.3.4: + * Errors when connected to a device with the DisconnectItems plugin enabled +- Changes from version 2.3.3: + * Issues with NM PANU connections of equally named devices + * Submenus in KDE Plasma tray + * Avoid using StatusNotifierItem and GtkStatusIcon icons in parallel + * Do not re-use dbusmenu item identifiers; avoids issues at least with + gnome-shell-extension-appindicator +- Changes from version 2.3.2: + * StatusNotifierItem submenus did not work in lxqt-panel (@niknah) + * StatusNotifierItem vanished on panel restarts + * StatusNotifierItem compatibility issues with libdbusmenu used at least + by xfce4-panel and Waybar + * StatusNotifierItem showed the menu on left click in xfce4-panel +- Changes from version 2.3.1: + * StatusNotifierItem sent an incomplete NewStatus signal. + * Avoid statusbar resize when showing progressbar +- Changes from version 2.3.0: + * Blocked emblem was not visible for scales other than 1 + * Audio profile switcher in applet menu (@abhijeetviswa) + * Symbolic tray icon option (GSettings switch symbolic-status-icons in + org.blueman.general) + * Replace AppIndicator with DBus StatusNotifierItem + * Use a GtkTreeModelFilter to show/hide unnamed devices + * Replace sigint hack with GLib to catch it + * Port meson from deprecated python3 module + * Rework battery handling + * Merge Battery applet plugin into ConnectionNotifier + * Symbolic icons and small UI improvements +- Changes from version 2.2.5: + * Fix network interface iteration on 32 bit systems + * Manager: Fix cancel button in send-note dialog + * Fix battery and signals bars +- Removed blueman-2.2.4-ayatana-appindicator.patch as Appindicator + has been replaced with DBus StatusNotifierItem +- Dependencies.md file is no longer packaged + +- Do not recommend -lang package: the auto-generated -lang package + already contains relevant supplements. + +- Added iproute2 build dependency to satisfy ip requirement + +- Update to version 2.2.4: + * Dropped the PIN database. + * Fix that blueman-mechanism accepted arbitrary file paths and + returned the errors from trying to open them, + see https://github.com/blueman-project/blueman/security/advisories/GHSA-3r9p-m5c8-8mw8 +- Add blueman-2.2.4-ayatana-appindicator.patch: Support + Ayatana AppIndicators. +- Require dbus(org.freedesktop.Notifications) instead of + notification-daemon. + +- Disable agent startup on Pantheon desktop + +- Update to version 2.2.3 + * Recent connections disabled after suspend and resume + * Service authorization notifications did not respond + * Passkeys did not get displayed +- Updates from version 2.2.2 + * Issues with power level bars + * Error message in blueman-mechanism + +- Update to version 2.2.1 + * New Desktop notifications on connect / disconnect + * New notifications with battery level for connecting devices + * Allow cancelling device connection attempts + * Allow opening device menus via keyboard (Shift+F10 or menu key) + * Add Ctrl+Q and Ctrl+W accelerators for closing blueman-manager + * Stop discovery and retry connection for broken adapter drivers + * Improved passkey handling + * Auto-connect settings for supported services + * Fix hide devices with no name + * Fix disconnecting NMDevice + * Fix DiscvManager plugin showed its icon unreliably + * Drop blueman-report, and blueman-assistant +- Add subpackages for caja, nautilus, and nemo sendto extensions + - * Security Release for CVE-2020-15238 (boo#1178196) + * Security Release for CVE-2020-15238 (bsc#1178196) breeze +- Add patches to make the window outline configurable (kde#465948): + * 0001-Outline-intensity-setting.patch + * 0002-Undo-some-string-changes-from-the-preceding-commit.patch + +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Setting height before adding margins + * Calling expandSize in flat comboboxes too + breeze-gtk +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * gtk3, gtk4: apply searchbar styles to the box inside the revealer inside the searchbar + * gtk3, gtk4: Make image-buttons have min-height + * Remove margins between linked buttons + discover +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * rpm-ostree/notifier: Setup a watcher to trigger reboot check + * rpm-ostree/notifier: Fix update/reboot notification logic + * ApplicationPage: Allow main app info column to grow with window + * ApplicationPage: off-by-one in stackedLayout calc + * ApplicationResouceButton: place icon side-by-side to the title + * ApplicationResourceButton: attribute the left/right padding + * ApplicationPage: drop the ternary operator for buttonWidth + * flatpak: Use Downloading as the status for Flatpak transactions + * pk: Finish porting away from runservices (kde#466742) + * pk: Don't forget to finish streams (kde#466765) + * Flatpak: Fix spacing in permissions view + * fwupd: Mark the backend as invalid if fwupd_client_connect() fails +- Drop patches, now upstream: + * 0001-pk-Don-t-forget-to-finish-streams.patch + drkonqi5 +- Replace '%service_del_postun -n' with '%service_del_postun_without_restart' + +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Add emoji picker to mappings + firewalld +- Fix firewall-offline-cmd fails with ERROR: Calling pre func + Added following patch (bsc#1206928) + [+ 0003-firewall-offline-cmd-fail-fix.patch] + gdm +- Update gdm-fingerprint.pamd and gdm-smartcard.pamd: Before this + they do not really support fingerprint and smartcard, just put + correct configuration to make them work (bsc#1205664). +- Enable split authentication because we have correct + gdm-fingerprint.pamd and gdm-smartcard.pamd. + +- Update gdm-disable-gnome-initial-setup.patch: Refactoring to + disable it on SLE runtime, so with the same executable it is + still possible to run on Leap (jsc#PED-1719). + glibc +- amd-cacheinfo.patch: x86: Cache computation for AMD architecture + (bsc#1207957) + +- gmon-hash-table-size.patch: gmon: Fix allocated buffer overflow + (CVE-2023-0687, bsc#1207975, BZ #29444) + +- strncmp-avx2-boundary.patch: Fix avx2 strncmp offset compare condition + check (bsc#1208358, BZ #25933) + +- dlopen-filter-object.patch: elf: Allow dlopen of filter object to work + (bsc#1207571, BZ #16272) +- powerpc-tst-ucontext.patch: powerpc: Fix unrecognized instruction errors + with recent GCC + google-noto-sans-cjk-fonts +- Fix bsc#1203741: Add _constraint file to make it build (taken from Factory) +- Use %license to store OFL license text + kactivitymanagerd +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kcm_sddm +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kde-cli-tools5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kde-gtk-config5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kernel-default +- net: tls: fix possible race condition between + do_tls_getsockopt_conf() and do_tls_setsockopt_conf() + (bsc#1209366 CVE-2023-28466). +- commit 3a1702c + +- mm: memcontrol: deprecate charge moving (bsc#1209801). +- commit a953603 + +- netdevice: add the case if dev is NULL (bsc#1208628). +- Refresh + patches.suse/net-add-net-device-refcount-tracker-infrastructure.patch. +- commit 726a950 + +- Rename + patches.suse/locking-rwsem-Disable-preemption-in-all-down_write-a.patch. +- commit 37a8307 + +- Rename + patches.suse/locking-rwsem-Disable-preemption-in-all-down_read-an.patch. +- commit f080340 + +- Refresh + patches.suse/locking-rwsem-Prevent-non-first-waiter-from-spinning.patch. +- commit af52be6 + +- Delete patches.suse/iwlwifi-module-firmware-ucode-fix.patch (bsc#1209681) + linux-firmware tree finally provides iwlwifi-*-72.ucode, and more badly, + they dropped *-71.ucode, hence the workaround leads to the firmware load + failure. Drop the old workaround now. +- commit dc4368f + +- net/sched: tcindex: update imperfect hash filters respecting + rcu (CVE-2023-1281 bsc#1209634). +- commit aced962 + +- Update + patches.suse/Revert-block-freeze-the-queue-earlier-in-del_gendisk-4c66.patch + (git-fixes bsc#1208921). +- commit b2c9582 + +- prlimit: do_prlimit needs to have a speculation check + (bsc#1209256 CVE-2017-5753). +- commit b7234d1 + +- Revert "block: freeze the queue earlier in del_gendisk" + (git-fixes). +- commit 6b26f6b + kernel-kvmsmall +- net: tls: fix possible race condition between + do_tls_getsockopt_conf() and do_tls_setsockopt_conf() + (bsc#1209366 CVE-2023-28466). +- commit 3a1702c + +- mm: memcontrol: deprecate charge moving (bsc#1209801). +- commit a953603 + +- netdevice: add the case if dev is NULL (bsc#1208628). +- Refresh + patches.suse/net-add-net-device-refcount-tracker-infrastructure.patch. +- commit 726a950 + +- Rename + patches.suse/locking-rwsem-Disable-preemption-in-all-down_write-a.patch. +- commit 37a8307 + +- Rename + patches.suse/locking-rwsem-Disable-preemption-in-all-down_read-an.patch. +- commit f080340 + +- Refresh + patches.suse/locking-rwsem-Prevent-non-first-waiter-from-spinning.patch. +- commit af52be6 + +- Delete patches.suse/iwlwifi-module-firmware-ucode-fix.patch (bsc#1209681) + linux-firmware tree finally provides iwlwifi-*-72.ucode, and more badly, + they dropped *-71.ucode, hence the workaround leads to the firmware load + failure. Drop the old workaround now. +- commit dc4368f + +- net/sched: tcindex: update imperfect hash filters respecting + rcu (CVE-2023-1281 bsc#1209634). +- commit aced962 + +- Update + patches.suse/Revert-block-freeze-the-queue-earlier-in-del_gendisk-4c66.patch + (git-fixes bsc#1208921). +- commit b2c9582 + +- prlimit: do_prlimit needs to have a speculation check + (bsc#1209256 CVE-2017-5753). +- commit b7234d1 + +- Revert "block: freeze the queue earlier in del_gendisk" + (git-fixes). +- commit 6b26f6b + kgamma5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + khotkeys5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kmenuedit5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kpipewire +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Guard m_producer + * stream: better fallback for BGR formats when downloading into a QImage + * stream: Fix support of SPA_VIDEO_FORMAT_RGB + * recording: Drop unnecessary conditional + * recording: use "good" deadline rather than quality that is deprecated upstream + * recording: Make bitrate depend on the stream size + kscreen5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * kded/output: with duplicate edid hashes, use different global config files (kde#452614,kde#448599) + kscreenlocker +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + ksshaskpass5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + ksystemstats5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kwayland-integration +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + kwin5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * colordevice: default the simple transformations to 1 + * backends/drm: fail commits if nonexistent properties would be set + * backends/drm: ignore opaque formats for the cursor plane + * Forward keymap and modifier change to input method keyboard grab when changed. + * inputmethod: Show the input method even if it was dismissed (kde#466969) + * backends/drm: support CTM for simple color transformations (kde#455720) + * xwayland: Prevent potential file descriptor leak + * wayland: Prevent leaking --wayland-fd and --xwayland-fd to child processes + * helper: Don't leak lock file to kwin_wayland + * backends/wayland: Don't leak renderD128 fd + * backends/wayland: Don't leak WaylandEventThread's pipe fds + * Fix text-input-v1 compatibility with 111.0.5563.64-1 + * input: Make sure input backends are initialised when the workspace is set up (kde#466721) + * Tabbox: Fix grouping windows by application + * scene: Use correct scale when computing world transform + * wayland: Fix interactive resize of debug console + * kscreenintegration: read global output data + * workspace: move kscreen integration into separate files + * screencast: Try harder to be compatible with the pipewire buffer format + * screencasting: on memfd, skip the QImage step (kde#466655) + * TabBox: Avoid unnecesary resets of the client model (kde#466660) + * wayland: Cancel selections if set without focus + * windowitem: properly handle sub-subsurfaces (kde#466747) + * tabletmodemanager: properly export properties + * Enable GLSL for Mali (Lima) / PinePhone devices + kwrited5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + layer-shell-qt +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + libheif +- security update +- added patches + fix CVE-2023-0996 [bsc#1208640], buffer overflow in heif_js_decode_image in libheif + + libheif-CVE-2023-0996.patch + +- fixed CVE-2020-23109 [bsc#1192382] + (bca0162018df9a32d21c05aad1fa203881fa7813) libkdecoration2 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + libkscreen2 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * libdpms/wayland: Do not create dpms interfaces for placeholder QScreens (kde#466674) + * dpms/xcb: Make sure we are setting it as unsupported when it is (kde#466181) + * backends/wayland: Round passed scale + libksysguard5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + liblouis +- Add liblouis-CVE-2023-26769.patch: Check the path length before + copying into tableFile(CVE-2023-26769 bsc#1209432). + +- Add liblouis-CVE-2023-26767.patch: Check the length of path before + copying into dataPath(CVE-2023-26767 bsc#1209429). + - compilePassOpcode (boo#1197085 CVE-2022-26981). + compilePassOpcode (bsc#1197085 CVE-2022-26981). - write in compileRule (boo#1200120 CVE-2022-31783). + write in compileRule (bsc#1200120 CVE-2022-31783). libqt5-qtbase +- Update to version 5.15.8+kde185: + * QFSFileEngine: fix overflow bug when using lseek64 + * Add QImage null check when QOpenGLTexture converts +- Add patch to fix return key handling in QGroupBox on GNOME (bsc#1209364): + * 0001-Revert-QGnomeTheme-Allow-Space-Return-Enter-and-Sele.patch +- Add patch to fix XInput2 events in big-endian X11 clients (bsc#1204883, QTBUG-105157): + * big-endian-scroll.patch + libstorage-ng +- Translated using Weblate (Portuguese (Brazil)) (bsc#1149754) +- 4.5.92 + +- merge gh#openSUSE/libstorage-ng#922 +- add PCIe as disk transport +- 4.5.91 + +- merge gh#openSUSE/libstorage-ng#921 +- fixed setting sysfs-name for partitions on nvme disks +- 4.5.90 + +- Translated using Weblate (Georgian) (bsc#1149754) +- 4.5.89 + +- Translated using Weblate (Polish) (bsc#1149754) +- 4.5.88 + lsvpd +- Fix NVMe information parsing for some devices (bsc#1208122 ltc#200118) + + lsvpd-Add-NVME-f1h-log-page-VPD-information-parsing-.patch + + lsvpd-Update-nvme_template-with-logpage-format-for-0.patch + +- Replace transitional %usrmerged macro with regular version check (boo#1206798) + mdadm +- sysconfig.mdadm: Remove ServiceRestart line to mdadm since there + is not such systemd service. (bsc#1203491) + milou5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + openssl-1_1 +- Security Fix: [CVE-2023-0465, bsc#1209878] + * Invalid certificate policies in leaf certificates are silently ignored + * Add openssl-CVE-2023-0465.patch +- Security Fix: [CVE-2023-0466, bsc#1209873] + * Certificate policy check not enabled + * Add openssl-CVE-2023-0466.patch + +- Security Fix: [CVE-2023-0464, bsc#1209624] + * Excessive Resource Usage Verifying X.509 Policy Constraints + * Add openssl-CVE-2023-0464.patch + +- FIPS: Service-level indicator [bsc#1208998] + * Add additional check required by FIPS 140-3. Minimum values for + PBKDF2 are: 112 bits for key, 128 bits for salt, 1000 for + iteration count and 20 characters for password. + * Add openssl-1_1-ossl-sli-008-pbkdf2-salt_pass_iteration.patch + openvpn +- bsc#1202792: --enable-iproute2 added back as default option. + pam_kwallet +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + patterns-gnome +- Require xorg-x11-fonts to fix gnome-shell starting failure (bsc#1203966) + pkcs11-helper +- Added pkcs11-helper_support-RSA_NO_PADDING-padding.patch + * Fixes bsc#1175219 + * Adds support for openssl's RSA_NO_PADDING padding + * Sourced from https://github.com/OpenSC/pkcs11-helper/commit/c192bb48 + -- remove static libraries and "la" files -- fix -devel package dependencies and pkgconfig file - plasma-browser-integration +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + plasma-nm5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Don't crash when importing VPN config with missing NetworkManager plugin (kde#465484) + * [kcm] Show VPN import error in the UI + plasma5-addons +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + plasma5-desktop +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Partly revert "make sure screen numbers are consecutive" (kde#464873) + plasma5-disks +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + plasma5-integration +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Revert "extend kio with portal-based open-with implementation" (kde#460741) + plasma5-openSUSE +- Update to 5.27.3 + plasma5-pa +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * kcm: Fix visuals when testing non-standard channel names + * kcm: Fix missing id and implicit parameter signal handler (kde#466075) + plasma5-systemmonitor +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + plasma5-thunderbolt +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + plasma5-workspace +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * klipper: remove duplicate items when loading from history (kde#466236) + * kcms/region_language: set LC_PAPER, not LC_PAGE (kde#467269) + * Screenpool: avoid uniqueConnection with lambda + * kcms/fonts: Enable change notifications for base fonts settings (forceFontDPI) + * sddm-theme: Transfer the focus to the text field as we show the OSK (kde#466969) + * appstreamtest: fix test failure + * wallpapers/image: improve efficiency of ImageFinder + * klipper: Make action menu Frameless (kde#466406) + * dataengines/mpris2: tolerate non-standards compliant players like mpris-proxy (kde#466288) + * klipper: History test passes now + * klipper: Insert items before remove (kde#466041) + * sddm: Focus something useful when switching between alternative login screens + polkit-kde-agent-5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + powerdevil5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Suspend by default on AC profile + * Use correct tablet mode function to determine mobile-ness + smartmontools +- fix smartctl crash for an NVMe on big endian systems [bsc#1208905] +- added patches + fix https://www.smartmontools.org/changeset/5448 + + smartmontools-smartctl-NVMe-big-endian.patch + systemd +- Import commit dad0071f15341be2b24c2c9d073e62617e0b46733 (merge of v249.16) + +- Fix return non-zero value when disabling SysVinit service (bsc#1208432) + +- Drop build requirement on libpci, it's not more needed since udev hwdb was + introduced 11 years ago. + +- Move systemd-boot and all components managing (secure) UEFI boot into udev + sub-package: they may deserve a dedicated sub-package in the future but for + now move them to udev so they aren't installed in systemd based containers. + systemsettings5 +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- No code changes since 5.27.2 + tigervnc +- Fixes for bsc#1209283 + * Drop chown vnc:vnc calls in with-vnc-key.sh + * Add TLSNone to -securitytypes to increase security in xvnc@.service + xdg-desktop-portal-kde +- Update to 5.27.3 + * New bugfix release + * For more details please see: + * https://kde.org/announcements/plasma/5/5.27.3 +- Changes since 5.27.2: + * Fix cursor and borders selectors in screenshot dialog + xorg-x11-server +- U_xserver-composite-Fix-use-after-free-of-the-COW.patch + * overlay window use-after-free (CVE-2023-1393, ZDI-CAN-19866, + bsc#1209543) + xwayland +- U_xserver-composite-Fix-use-after-free-of-the-COW.patch + * overlay window use-after-free (CVE-2023-1393, ZDI-CAN-19866, + bsc#1209543) + yast2-snapper +- Fixed translations: Moved variable message part out of _(...) + (bsc#1209956) +- 4.5.1 + yast2-storage-ng +- Fix the translation of widgets titles in the dialog to select + a partitioning scheme (bsc#1209697). +- 4.5.19 + yast2-users +- Stop mangling the value of "Create as Btrfs Subvolume" for new + users when clicking on "Edit -> Details" (bsc#1209377). +- 4.5.4 + +- AutoYaST: Fix creation of home for system users (bsc#1202974). + zstd +- Fix CVE-2022-4899, bsc#1209533 + * Fix buffer underflow when dir1 == "" + * Disallow empty string as an argument for --output-dir-flat="" + and --output-dir-mirror="". +- Added patches: + * Disallow-empty-output-directory.patch + * Fix-buffer-underflow-for-null-dir1.patch +