Branch project for package python-CairoSVG

Edit Package python-CairoSVG.openSUSE_Backports_SLE-15-SP5_Update

This project was created for package python-CairoSVG via attribute OBS:Maintained

Refresh
Refresh
Source Files
Filename Size Changed
CVE-2023-27586.patch 0000002803 2.74 KB
CairoSVG-2.5.2.obscpio 0262792206 251 MB
CairoSVG.obsinfo 0000000098 98 Bytes
_service 0000000544 544 Bytes
python-CairoSVG.changes 0000008106 7.92 KB
python-CairoSVG.spec 0000002605 2.54 KB
Latest Revision
Daniel Garcia's avatar Daniel Garcia (dgarcia) committed (revision 2)
- Add CVE-2023-27586.patch to Don't allow fetching external files
  unless explicitly asked for.
  (gh#Kozea/CairoSVG@12d31c653c02, bsc#1209538)

- Update to version 2.5.2
  * Fix marker path scale

- Update to version 2.5.1 (bsc#1180648, CVE-2021-21236):
  * Security fix: When processing SVG files, CairoSVG was using two
    regular expressions which are vulnerable to Regular Expression 
    Denial of Service (REDoS). If an attacker provided a malicious 
    SVG, it could make CairoSVG get stuck processing the file for a 
    very long time.
  * Fix marker positions for unclosed paths
  * Follow hint when only output_width or output_height is set
  * Handle opacity on raster images
  * Don’t crash when use tags reference unknown tags
  * Take care of the next letter when A/a is replaced by l
  * Fix misalignment in node.vertices
- Updates for version 2.5.0.
  * Drop support of Python 3.5, add support of Python 3.9.
  * Add EPS export
  * Add background-color, negate-colors, and invert-images options
  * Improve support for font weights
  * Fix opacity of patterns and gradients
  * Support auto-start-reverse value for orient
  * Draw images contained in defs
  * Add Exif transposition support
  * Handle dominant-baseline
  * Support transform-origin
Comments 0
openSUSE Build Service is sponsored by