From 244a99e69eb67655c67b9112ea6fb1a5b7b26182 Mon Sep 17 00:00:00 2001 From: Pavel Raiskup Date: Jan 16 2024 13:54:24 +0000 Subject: Update python-templated-dictionary to 1.4-1 --- diff --git a/.gitignore b/.gitignore index 920a414..a4f08d9 100644 --- a/.gitignore +++ b/.gitignore @@ -1,2 +1,3 @@ /python-templated-dictionary-1.1.tar.gz /python-templated-dictionary-1.2.tar.gz +/python-templated-dictionary-1.4.tar.gz diff --git a/python-templated-dictionary.spec b/python-templated-dictionary.spec index 7de6955..8e441ff 100644 --- a/python-templated-dictionary.spec +++ b/python-templated-dictionary.spec @@ -6,8 +6,8 @@ %endif Name: python-%{srcname} -Version: 1.2 -Release: 2%{?dist} +Version: 1.4 +Release: 1%{?dist} Summary: Dictionary with Jinja2 expansion License: GPL-2.0-or-later @@ -54,8 +54,13 @@ version=%version %py3_install %changelog -* Fri Jan 20 2023 Fedora Release Engineering - 1.2-2 -- Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild +* Tue Jan 16 2024 Pavel Raiskup +- make the TemplatedDictionary objects picklable +- use a sandboxed jinja2 environment, fixes CVE-2023-6395 + +* Tue Jan 16 2024 Pavel Raiskup +- make the TemplatedDictionary objects picklable +- Use a sandboxed jinja2 environment, CVE-2023-6395 * Wed Nov 30 2022 Miroslav Suchý 1.2-1 - use spdx license diff --git a/sources b/sources index f5a0e51..3b70017 100644 --- a/sources +++ b/sources @@ -1 +1 @@ -SHA512 (python-templated-dictionary-1.2.tar.gz) = 9bf20578f3cd5a4bfe50121a5dd9b239b56fcf3002264a329542fc606bd44227038f2eeb9a77297338d3b711a9258d3066b6aad2cd9de4413a7c985e77d1b85b +SHA512 (python-templated-dictionary-1.4.tar.gz) = ced996f1b1f159bb6321c6183d005f71f380d747497f4273f2f3cf706d8304bb35dfa5ef63e7d708d7be381b8ba9c58ba1441260b154614c01e1e61bbbeb4ce9