Fedora 13 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Fri Aug 27 06:55:20 UTC 2010


The following builds have been pushed to Fedora 13 updates-testing

    389-admin-1.1.11-1.fc13
    389-ds-base-1.2.6-1.fc13
    RunSnakeRun-2.0.0-0.4.b4.fc13
    anyremote-5.2-1.fc13
    anyremote2html-1.4-1.fc13
    autofs-5.0.5-28.fc13
    bluefish-2.0.1-2.fc13
    chmlib-0.40-3.fc13
    clive-2.2.13-2.fc13
    couchdb-0.11.2-2.fc13
    drraw-2.2-0.6.b2.fc13
    eclipse-systemtapgui-1.1-1.fc13
    euca2ools-1.3-1.fc13
    febootstrap-2.8-1.fc13
    ghostscript-8.71-14.fc13
    gtk-equinox-engine-1.20-4.fc13
    ldns-1.6.6-2.fc13
    libHX-3.6-1.fc13
    mercurial-1.6.3-1.fc13
    pam_mount-2.5-1.fc13
    policycoreutils-2.0.83-20.fc13
    python-squaremap-1.0.0-0.2.b24.fc13
    qdbm-1.8.78-1.fc13
    report-0.20-0.fc13
    setroubleshoot-2.2.95-1.fc13
    spectrum-1.4.1-1.fc13
    system-config-printer-1.2.4-1.fc13
    tellico-2.3-1.fc13
    vdr-epgsearch-0.9.25-0.4.beta17.fc13

Details about builds:


================================================================================
 389-admin-1.1.11-1.fc13 (FEDORA-2010-13636)
 389 Administration Server (admin)
--------------------------------------------------------------------------------
Update Information:

This is the final 389-ds-base 1.2.6 release - it is exactly the same as the
1.2.6.rc7.  This is the final 389-admin 1.1.11 release - it is exactly the same
as the 1.1.11.rc2 release.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Rich Megginson <rmeggins at redhat.com> - 1.1.11-1
- This is the final 1.1.11 release
* Wed Aug  4 2010 Rich Megginson <rmeggins at redhat.com> - 1.1.11-0.6.rc2
- 1.1.11.rc2 release
- git tag 389-admin-1.1.11.rc2
- Bug 594745 - Get rid of dirsrv_lib_t label
* Wed Jun  9 2010 Rich Megginson <rmeggins at redhat.com> - 1.1.11-0.5.rc1
- 1.1.11.rc1 release
* Wed May 26 2010 Rich Megginson <rmeggins at redhat.com> - 1.1.11-0.4.a4
- 1.1.11.a4 release
* Wed Apr  7 2010 Nathan Kinder <nkinder at redhat.com> - 1.1.11-0.3.a3
- 1.1.11.a3 release
- Bug 570912 - dirsrv-admin SELinux module fails to install
- Change parsing of start-slapd for instance name
- Bug 574233 - Updated requirements for selinux policy
- Moved selinux subpackage into base package
* Fri Feb 26 2010 Rich Megginson <rmeggins at redhat.com> - 1.1.11.a2-0.2
- the 1.1.11.a2 release
- Bug 460162 - FedoraDS "with-FHS" installs init.d StartupScript in wrong location
- Bug 460209 - Correct configure help message
- Bug 560827 - Admin Server: DistinguishName validation fails
- Make check for threaded httpd work with Apache 2.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #543590 - Tracking bug for 389 Directory Server 1.2.6
        https://bugzilla.redhat.com/show_bug.cgi?id=543590
--------------------------------------------------------------------------------


================================================================================
 389-ds-base-1.2.6-1.fc13 (FEDORA-2010-13636)
 389 Directory Server (base)
--------------------------------------------------------------------------------
Update Information:

This is the final 389-ds-base 1.2.6 release - it is exactly the same as the
1.2.6.rc7.  This is the final 389-admin 1.1.11 release - it is exactly the same
as the 1.1.11.rc2 release.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-1
- This is the final 1.2.6 release
* Tue Aug 10 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.11.rc7
- 1.2.6 release candidate 7
- git tag 389-ds-base-1.2.6.rc7
- Bug 621928 - Unable to enable replica (rdn problem?) on 1.2.6 rc6
* Mon Aug  2 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.10.rc6
- 1.2.6 release candidate 6
- git tag 389-ds-base-1.2.6.rc6
- Bug 617013 - repl-monitor.pl use cpu upto 90%
- Bug 616618 - 389 v1.2.5 accepts 2 identical entries with different DN formats
- Bug 547503 - replication broken again, with 389 MMR replication and TCP errors
- Bug 613833 - Allow dirsrv_t to bind to rpc ports
- Bug 612242 - membership change on DS does not show on AD
- Bug 617629 - Missing aliases in new schema files
- Bug 619595 - Upgrading sub suffix under non-normalized suffix disappears
- Bug 616608 - SIGBUS in RDN index reads on platforms with strict alignments
- Bug 617862 - Replication: Unable to delete tombstone errors
- Bug 594745 - Get rid of dirsrv_lib_t label
* Wed Jul 14 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.9.rc3
- make selinux-devel explicit Require the base package in order
- to comply with Fedora Licensing Guidelines
* Thu Jul  1 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.8.rc3
- 1.2.6 release candidate 3
- git tag 389-ds-base-1.2.6.rc3
- Bug 603942 - null deref in _ger_parse_control() for subjectdn
- 609256  - Selinux: pwdhash fails if called via Admin Server CGI
- 578296  - Attribute type entrydn needs to be added when subtree rename switch is on
- 605827 - In-place upgrade: upgrade dn format should not run in setup-ds-admin.pl
- Bug 604453 - SASL Stress and Server crash: Program quits with the assertion failure in PR_Poll
- Bug 604453 - SASL Stress and Server crash: Program quits with the assertion failure in PR_Poll
- 606920 - anonymous resource limit - nstimelimit - also applied to "cn=directory manager"
* Wed Jun 16 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.7.rc2
- 1.2.6 release candidate 2
* Mon Jun 14 2010 Nathan Kinder <nkinder at redhat.com> - 1.2.6-0.6.rc1
- install replication session plugin header with devel package
* Wed Jun  9 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.5.rc1
- 1.2.6 release candidate 1
* Tue Jun  1 2010 Marcela Maslanova <mmaslano at redhat.com> - 1.2.6-0.4.a4.1
- Mass rebuild with perl-5.12.0
* Wed May 26 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.4.a4
- 1.2.6.a4 release
* Wed Apr  7 2010 Nathan Kinder <nkinder at redhat.com> - 1.2.6-0.4.a3
- 1.2.6.a3 release
- add managed entries plug-in
- many bug fixes
- moved selinux subpackage into base package
* Fri Apr  2 2010 Caolán McNamara <caolanm at redhat.com> - 1.2.6-0.3.a2
- rebuild for icu 4.4
* Tue Mar  2 2010 Rich Megginson <rmeggins at redhat.com> - 1.2.6-0.2.a2
- 1.2.6.a2 release
- add support for matching rules
- many bug fixes
* Fri Jan 15 2010 Nathan Kinder <nkinder at redhat.com> - 1.2.6-0.1.a1
- 1.2.6.a1 release
- Added SELinux policy and subpackages
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #543590 - Tracking bug for 389 Directory Server 1.2.6
        https://bugzilla.redhat.com/show_bug.cgi?id=543590
--------------------------------------------------------------------------------


================================================================================
 RunSnakeRun-2.0.0-0.4.b4.fc13 (FEDORA-2010-13663)
 GUI Viewer for Python profiling runs
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #568148 - Review Request: python-squaremap - SquareMap for wxPython
        https://bugzilla.redhat.com/show_bug.cgi?id=568148
  [ 2 ] Bug #568149 - Review Request: RunSnakeRun - GUI Viewer for Python profiling runs
        https://bugzilla.redhat.com/show_bug.cgi?id=568149
--------------------------------------------------------------------------------


================================================================================
 anyremote-5.2-1.fc13 (FEDORA-2010-13655)
 Remote control through bluetooth or IR connection
--------------------------------------------------------------------------------
ChangeLog:

* Wed Aug 25 2010 Mikhail Fedotov <anyremote at mail.ru> - 5.2
- Enhanced support for Get(password) command. Properly handle ampersand in file
  names.
--------------------------------------------------------------------------------


================================================================================
 anyremote2html-1.4-1.fc13 (FEDORA-2010-13664)
 WEB interface for anyRemote
--------------------------------------------------------------------------------
ChangeLog:

* Tue Aug 24 2010 Mikhail Fedotov <anyremote at mail.ru> - 1.4
- Support Set(list,select,...) command, support cookie for authorization.
--------------------------------------------------------------------------------


================================================================================
 autofs-5.0.5-28.fc13 (FEDORA-2010-13642)
 A tool for automatically mounting and unmounting filesystems
--------------------------------------------------------------------------------
Update Information:


--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 27 2010 Ian Kent <ikent at redhat.com> - 1:5.0.5-28.fc13
- fix status privilege error (bz627605).
* Wed Aug 18 2010 Ian Kent <ikent at redhat.com> - 1:5.0.5-27.fc13
- fix restart not working (bz624694).
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #624694 - restart autofs not working
        https://bugzilla.redhat.com/show_bug.cgi?id=624694
  [ 2 ] Bug #627605 - insufficient privilege to check service status
        https://bugzilla.redhat.com/show_bug.cgi?id=627605
  [ 3 ] Bug #623788 - Init script fails for restart if daemon is running.
        https://bugzilla.redhat.com/show_bug.cgi?id=623788
--------------------------------------------------------------------------------


================================================================================
 bluefish-2.0.1-2.fc13 (FEDORA-2010-13662)
 GTK2 web development application for experienced users
--------------------------------------------------------------------------------
Update Information:

This update addresses a bug in which bluefish crashes if a filter (e.g. "Web
Files") is applied in the File Open dialog.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Paul Howarth <paul at city-fan.org> - 2.0.1-2
- Fix crash in File Open dialog with filter applied (#626246)
- Change buildreq "man" to "/usr/bin/man" since the "man" package has been
  obsoleted by "man-db" from Fedora 14
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #626246 - [abrt] bluefish-2.0.1-1.fc13: IA__g_str_hash: Process /usr/bin/bluefish was killed by signal 11 (SIGSEGV)
        https://bugzilla.redhat.com/show_bug.cgi?id=626246
--------------------------------------------------------------------------------


================================================================================
 chmlib-0.40-3.fc13 (FEDORA-2010-13643)
 Library for dealing with ITSS/CHM format files
--------------------------------------------------------------------------------
Update Information:

Fixed issue with rpath.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Peter Lemenkov <lemenkov at gmail.com> - 0.40-3
- Removed rpath (see rhbz #569128)
- Patches rebased
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #569128 - rpath in chmlib
        https://bugzilla.redhat.com/show_bug.cgi?id=569128
--------------------------------------------------------------------------------


================================================================================
 clive-2.2.13-2.fc13 (FEDORA-2010-13634)
 Video extraction tool for user-uploaded video hosts
--------------------------------------------------------------------------------
Update Information:

Update to 2.2.13
--------------------------------------------------------------------------------
ChangeLog:

* Wed Aug 25 2010 Nicoleau Fabien <nicoleau.fabien at gmail.com> 2.2.13-1
- Update to 2.2.13
- Add perl-URI require
* Tue Jun  1 2010 Marcela Maslanova <mmaslano at redhat.com> - 2.2.11-2
- Mass rebuild with perl-5.12.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #621847 - Clive can't download videos from YouTube any more
        https://bugzilla.redhat.com/show_bug.cgi?id=621847
  [ 2 ] Bug #620121 - Clive should depend on perl-URI
        https://bugzilla.redhat.com/show_bug.cgi?id=620121
--------------------------------------------------------------------------------


================================================================================
 couchdb-0.11.2-2.fc13 (FEDORA-2010-13640)
 A document database server, accessible via a RESTful JSON API
--------------------------------------------------------------------------------
Update Information:

Despite the fact that this is a security-related fix I would like to test these
packages for a while because of possible API incompatibilities (version
upgrade).
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Peter Lemenkov <lemenkov at gmail.com> 0.11.2-2
- Cleaned up spec-file a bit
* Tue Aug 17 2010 Peter Lemenkov <lemenkov at gmail.com> 0.11.2-1
- Ver. 0.11.2
* Wed Jul 14 2010 Peter Lemenkov <lemenkov at gmail.com> 0.11.1-1
- Ver. 0.11.1
- Removed patch for compatibility with Erlang/OTP R14A (merged upstream)
* Sun Jul 11 2010 Peter Lemenkov <lemenkov at gmail.com> 0.11.0-3
- Compatibility with Erlang R14A (see patch9)
* Tue Jun 22 2010 Peter Lemenkov <lemenkov at gmail.com> 0.11.0-2
- Massive spec cleanup
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #627498 - couchdb: start-up script sets insecure LD_LIBRARY_PATH
        https://bugzilla.redhat.com/show_bug.cgi?id=627498
  [ 2 ] Bug #624764 - CVE-2010-2234 couchdb: CSRF vulnerability in versions prior to 0.11.2/1.0.1
        https://bugzilla.redhat.com/show_bug.cgi?id=624764
--------------------------------------------------------------------------------


================================================================================
 drraw-2.2-0.6.b2.fc13 (FEDORA-2010-13653)
 Web based presentation front-end for RRDtool
--------------------------------------------------------------------------------
Update Information:

First Fedora release.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #473348 - Review Request: drraw - Web based presentation front-end for RRDtool
        https://bugzilla.redhat.com/show_bug.cgi?id=473348
--------------------------------------------------------------------------------


================================================================================
 eclipse-systemtapgui-1.1-1.fc13 (FEDORA-2010-13650)
 Eclipse plugins for SystemTap
--------------------------------------------------------------------------------
Update Information:

Here is where you give an explanation of your update.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jul 23 2010 Anithra P Janakiraman <anithra at linux.vnet.ibm.com> 1.1-1
- Added the systemtap Dashboard Feature, removed dependency on server.
--------------------------------------------------------------------------------


================================================================================
 euca2ools-1.3-1.fc13 (FEDORA-2010-13649)
 Elastic Utility Computing Architecture Command-Line Tools
--------------------------------------------------------------------------------
Update Information:

euca2ools 1.3 adds support for new command line options such as block device
mapping. It also contains a number of bugfixes.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Aug 25 2010 Garrett Holmstrom <gholms at fedoraproject.org> - 1.3-1
- Update to 1.3 final
- This release no longer requires python-boto 2.0
* Fri Jul 30 2010 Garrett Holmstrom <gholms at fedoraproject.org> - 1.2-5.20100701bzr293
- Rebuild prerelease against Python 2.7
* Thu Jul 22 2010 Garrett Holmstrom <gholms at fedoraproject.org> - 1.2-4.20100701bzr293
- Update to a snapshot that includes support for block device mapping [575258]
* Wed Jul 21 2010 David Malcolm <dmalcolm at redhat.com> - 1.2-3
- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #575201 - euca-describe-images shows no output if none of o a x specified
        https://bugzilla.redhat.com/show_bug.cgi?id=575201
  [ 2 ] Bug #575258 - Procedure to bundle and install image fails
        https://bugzilla.redhat.com/show_bug.cgi?id=575258
--------------------------------------------------------------------------------


================================================================================
 febootstrap-2.8-1.fc13 (FEDORA-2010-13637)
 Bootstrap a new Fedora system (like debootstrap)
--------------------------------------------------------------------------------
Update Information:

New, backwards compatible, upstream version 2.8.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Richard Jones <rjones at redhat.com> - 2.8-1
- New upstream version 2.8.
- This is backwards-compatible with version 2.7, and includes the
  new ext2 appliance builder.
- New BRs on mke2fs, libext2fs, glibc-static.
--------------------------------------------------------------------------------


================================================================================
 ghostscript-8.71-14.fc13 (FEDORA-2010-13635)
 A PostScript interpreter and renderer
--------------------------------------------------------------------------------
Update Information:

This package fixes a security problem (CVE-2010-2055) in ghostscript whereby gs
uses the current working directory to look for certain types of system file.
This has been fixed by changing the default behaviour.    Additionally, two bugs
have been fixed: scripts defining GS_EXECUTABLE have been corrected, and an
epstopdf failure has been fixed.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Tim Waugh <twaugh at redhat.com> 8.71-14
- Avoid epstopdf failure using upstream patch (bug #627390).
- More upstream fixes for bug #599564.
* Wed Aug 25 2010 Tim Waugh <twaugh at redhat.com> 8.71-13
- Fix implementation of -P- (bug #599564).
- Use -P- and -dSAFER in scripts (bug #599564).
* Wed Aug 25 2010 Tim Waugh <twaugh at redhat.com> 8.71-12
- Change SEARCH_HERE_FIRST default to make -P- default instead of -P
  (bug #599564).
- Removed redundant gs-executable patch (bug #502550).
* Thu Aug  5 2010 Tim Waugh <twaugh at redhat.com> 8.71-11
- Avoid another NULL pointer dereference in jbig2 code (bug #621569).
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #599564 - CVE-2010-2055 GhostScript: Honors files present in cwd at startup
        https://bugzilla.redhat.com/show_bug.cgi?id=599564
--------------------------------------------------------------------------------


================================================================================
 gtk-equinox-engine-1.20-4.fc13 (FEDORA-2010-13644)
 Equinox theme engine for GTK+ 2.x
--------------------------------------------------------------------------------
Update Information:

A new engine derived from Aurora 1.4. It features smooth gradients or glassy
effects, subtle shadows, rounded widgets.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Germán A. Racca <gracca at gmail.com> 1.20-4
- Removed dependency on gnome-icon-theme because faenza-icon-theme was released
- Fixed icon name in Equinox Glass theme
--------------------------------------------------------------------------------


================================================================================
 ldns-1.6.6-2.fc13 (FEDORA-2010-13657)
 Lowlevel DNS(SEC) library with API
--------------------------------------------------------------------------------
Update Information:

EVR bump because f12 got release 1.6.6-2
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Paul Wouters <paul at xelerance.com> - 1.6.6-2
- Bump for EVR
* Tue Aug 10 2010 Paul Wouters <paul at xelerance.com> - 1.6.6-1
- Upgraded to 1.6.6
- Removed patches integrated in new release
--------------------------------------------------------------------------------


================================================================================
 libHX-3.6-1.fc13 (FEDORA-2010-13127)
 General-purpose library for typical low-level operations
--------------------------------------------------------------------------------
Update Information:

Update to libHX 3.6 fixing a buffer overflow in HX_split():    * http://libhx.gi
t.sourceforge.net/git/gitweb.cgi?p=libhx/libhx;a=commitdiff;h=904a46f90d
pam_mount v2.5 (August 10 2010)  ===============================  Changes:  -
mount.crypt: fix incorrect processing of binary files in keyfile passthrough  -
call mount.crypt by means of mount -t crypt (selinux), same for umount  -
reorder the default path to search in /usr/local first, then /usr, /  - config:
add missing fd0ssh command to restore volumes using ssh  - ofl is now run as a
separate process (selinux policy simplification)    libHX v3.6 (August 16 2010)
===========================  Fixed:  - bitmap: set/clear/test had no effect due
to wrong type selection  - bitmap: avoid left-shift larger than type on 64-bit
- string: fixed buffer overflow in HX_split when too few fields were present in
the input    libHX 3.5 (August 01 2010)  ==========================  Fixed:  -
format2: failure to skip escaped char in "%(echo foo\ bar)" was corrected  -
proc: properly check for HXPROC_STDx--HXPROC_STDx_NULL overlap  - strquote: do
not cause allocation with invalid format numbers  Enhancements:  - format2: add
the %(exec) function  - format2: add the %(shell) function  - format2: security
feature for %(exec) and %(shell)  - format2: add the %(snl) function  - string:
HX_strquote gained HXQUOTE_LDAPFLT (LDAP search filter) support  - string:
HX_strquote gained HXQUOTE_LDAPRDN (LDAP relative DN) support  Changes:  -
format1: removed older formatter in favor of format2  - format2: add check for
empty key  - format2: function-specific delimiters  - format2: do nest-counting
even with normal parentheses  - format2: check for zero-argument function calls
- hashmap: do not needlessy change TID when no reshape was done  - string:
HX_basename (the fast variant) now recognizes the root directory  - string:
HX_basename now returns the trailing component with slashes instead of
everything after the last slash (which may have been nothing)
--------------------------------------------------------------------------------
ChangeLog:

* Mon Aug 16 2010 Till Maas <opensource at till.name> - 3.6-1
- really update to latest release
* Mon Aug 16 2010 Till Maas <opensource at till.name> - 3.5-1
- Update to latest release
- remove devel %files %{_includedir} globbing
- Update soname
* Sat Aug  7 2010 Till Maas <opensource at till.name> - 3.4-2
- Use less globbing in %files to detect changes
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #625866 - CVE-2010-2947 libHX: buffer overrun in HX_split()
        https://bugzilla.redhat.com/show_bug.cgi?id=625866
--------------------------------------------------------------------------------


================================================================================
 mercurial-1.6.3-1.fc13 (FEDORA-2010-13638)
 A fast, lightweight distributed source control management system
--------------------------------------------------------------------------------
Update Information:

see http://mercurial.selenic.com/wiki/WhatsNew
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Neal Becker <ndbecker2 at gmail.com> - 1.6.3-1
- Update to 1.6.3
--------------------------------------------------------------------------------


================================================================================
 pam_mount-2.5-1.fc13 (FEDORA-2010-13127)
 A PAM module that can mount volumes for a user session
--------------------------------------------------------------------------------
Update Information:

Update to libHX 3.6 fixing a buffer overflow in HX_split():    * http://libhx.gi
t.sourceforge.net/git/gitweb.cgi?p=libhx/libhx;a=commitdiff;h=904a46f90d
pam_mount v2.5 (August 10 2010)  ===============================  Changes:  -
mount.crypt: fix incorrect processing of binary files in keyfile passthrough  -
call mount.crypt by means of mount -t crypt (selinux), same for umount  -
reorder the default path to search in /usr/local first, then /usr, /  - config:
add missing fd0ssh command to restore volumes using ssh  - ofl is now run as a
separate process (selinux policy simplification)    libHX v3.6 (August 16 2010)
===========================  Fixed:  - bitmap: set/clear/test had no effect due
to wrong type selection  - bitmap: avoid left-shift larger than type on 64-bit
- string: fixed buffer overflow in HX_split when too few fields were present in
the input    libHX 3.5 (August 01 2010)  ==========================  Fixed:  -
format2: failure to skip escaped char in "%(echo foo\ bar)" was corrected  -
proc: properly check for HXPROC_STDx--HXPROC_STDx_NULL overlap  - strquote: do
not cause allocation with invalid format numbers  Enhancements:  - format2: add
the %(exec) function  - format2: add the %(shell) function  - format2: security
feature for %(exec) and %(shell)  - format2: add the %(snl) function  - string:
HX_strquote gained HXQUOTE_LDAPFLT (LDAP search filter) support  - string:
HX_strquote gained HXQUOTE_LDAPRDN (LDAP relative DN) support  Changes:  -
format1: removed older formatter in favor of format2  - format2: add check for
empty key  - format2: function-specific delimiters  - format2: do nest-counting
even with normal parentheses  - format2: check for zero-argument function calls
- hashmap: do not needlessy change TID when no reshape was done  - string:
HX_basename (the fast variant) now recognizes the root directory  - string:
HX_basename now returns the trailing component with slashes instead of
everything after the last slash (which may have been nothing)
--------------------------------------------------------------------------------
ChangeLog:

* Mon Aug 16 2010 Till Maas <opensource at till.name> - 2.5-1
- Update to lastest release
- Update libHX dependency
- remove upstreamed patches
- do not package pam_mount.txt (RH #615714)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #625866 - CVE-2010-2947 libHX: buffer overrun in HX_split()
        https://bugzilla.redhat.com/show_bug.cgi?id=625866
--------------------------------------------------------------------------------


================================================================================
 policycoreutils-2.0.83-20.fc13 (FEDORA-2010-13639)
 SELinux policy core utilities
--------------------------------------------------------------------------------
ChangeLog:

* Tue Aug 24 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-20
- Tighten down seunshare to create /tmp dir with sticky bit and  MS_NODEV | MS_NOSUID | MS_NOEXEC;
- Remove setsid on seunshare so ^c on sandbox will cause apps to exit
- Add dbus-launch --exit-with-session so all processes launched within the sandbox exit with the sandbox
- Clean up error handling so error will get sent back to sandbox tool
* Mon Aug 23 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-19
- Fix translation handling in file context page of system-config-selinux
* Fri Aug 13 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-18
- Fix sandbox error handling
* Fri Aug 13 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-17
- Apply patch to restorecond from Chris Adams, which will cause restorecond 
- to watch first user that logs in.
* Thu Aug 12 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-16
- Add COPYING file to doc dir
* Thu Aug  5 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-15
- Update po and translations
Resolves: #610473
* Thu Aug  5 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-14
- More fixes for polgen tools
* Thu Aug  5 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-13
- Remove requirement to run selinux-polgen as root
* Thu Aug  5 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-12
- Update po and translations
- Fix gui policy generation tools
* Wed Aug  4 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-11
- Update po and translations
* Sat Jul 31 2010 David Malcolm <dmalcolm at redhat.com> - 2.0.83-10
- rebuild against python 2.7
* Wed Jul 28 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-9
- Update selinux-polgengui to sepolgen policy generation
* Wed Jul 28 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-8
- Fix invalid free in seunshare and fix man page
* Tue Jul 27 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-7
- Update translations
* Mon Jul 26 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-6
- Fix sandbox man page
* Wed Jul 21 2010 David Malcolm <dmalcolm at redhat.com> - 2.0.83-5
- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild
* Tue Jul 20 2010 Dan Walsh <dwalsh at redhat.com> 2.0.83-4
- Add translations for menus
- Fixup man page from Russell Coker
--------------------------------------------------------------------------------


================================================================================
 python-squaremap-1.0.0-0.2.b24.fc13 (FEDORA-2010-13663)
 SquareMap for wxPython
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #568148 - Review Request: python-squaremap - SquareMap for wxPython
        https://bugzilla.redhat.com/show_bug.cgi?id=568148
  [ 2 ] Bug #568149 - Review Request: RunSnakeRun - GUI Viewer for Python profiling runs
        https://bugzilla.redhat.com/show_bug.cgi?id=568149
--------------------------------------------------------------------------------


================================================================================
 qdbm-1.8.78-1.fc13 (FEDORA-2010-13648)
 Quick Database Manager
--------------------------------------------------------------------------------
Update Information:

New version 1.8.78 is released.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 27 2010 Mamoru Tasaka <mtasaka at ioa.s.u-tokyo.ac.jp> - 1.8.78-1
- 1.8.78
* Wed Jun  2 2010 Marcela Maslanova <mmaslano at redhat.com> - 1.8.77-7
- Mass rebuild with perl-5.12.0
--------------------------------------------------------------------------------


================================================================================
 report-0.20-0.fc13 (FEDORA-2010-13656)
 Incident reporting library
--------------------------------------------------------------------------------
Update Information:

Fix large number of bugs
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Gavin Romig-Koch <gavin at redhat.com> 0.20-0
- add example of how to create report in python
- improve strata testing scripts 
- correct how we gather Product and Version information
- l10n: Updates to Ukrainian (uk) translation (from yuchor)
- l10n: Updates to Spanish (Castilian) (es) translation (from logan)
- l10n: Updates to Polish (pl) translation (from raven)
* Mon Aug 16 2010 Gavin Romig-Koch <gavin at redhat.com> 0.19-0
- fix duplicate 'cancel' buttons (Fedora 621088)
- Correct the order of target choices
- correct GTKIO success dialog box
- Fixed the issues found by Miroslav Trmac's and Jack Rieden's security review
    - lots of memory leaks plugged
    - all system() calls replaced with execve calls
    - many added error checks
    - -Wall -Werror turned on for strata_client_lib, and all warnings fixed
    - fix bugs in reportfile_add_binding_from_region, 
         reportfile_add_binding_from_namedfile, ssprintf, 
         internal_error_printf, and reportfile_start
- Report throws traceback when there is a configuration for a 
    non-present plugin (RHEL 614139)
- scp plugin: force password auth (RHEL 589702)(Fedora 589700)
- GTKIO: only show 'clickable' button if displaying the link is 
    possible (RHEL 594827)
- report cmd: check access to file immediatly (RHEL 614274)
- Include the ftp target and plugin in all installs (RHEL 614094)
- correct Obsoletes for report-*-RHEL-*
- fix crash in ftp plugin (Fedora 610870)(RHEL 609480)
- Production/GA configuration of report, enable Strata plugin (RHEL 567972)
    includeing a number of fixes to Strata plugin (RHEL 591922)(RHEL 589702)
- Updates to both Polish (raven) and Ukrainian (yurchor) translations
* Thu Jul 22 2010 David Malcolm <dmalcolm at redhat.com> - 0.17-2
- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild
* Tue Jun 29 2010 Gavin Romig-Koch <gavin at redhat.com> 0.18-1
- strata plugin buttonURLXxxx (RHEL 589704)
- improve strata server testing scripts
- reorg functions in strata_client_lib (RHEL 591922 related)
- improved error checking of C compiler
- Eliminate crash in DisplayXXXMessage
* Thu Jun 24 2010 Gavin Romig-Koch <gavin at redhat.com> 0.17-1
- better fix for bug in localsave to /tmp
    (Fedora 595854)(RHEL 595855)(RHEL 607507)
- Revert "fix bug in localsave to /tmp (Fedora 595854)(RHEL 595855)"
- correct SyntaxWarning: name 'HAVE_gnomekeyring' is used prior to
    global declaration. (Fedora 604235)
    Author: Ales Kozumplik <akozumpl at redhat.com>
- l10n: Updates to Polish (pl) translation
    Author: raven <raven at fedoraproject.org>
- l10n: Updates to Ukrainian (uk) translation
    Author: yurchor <yurchor at fedoraproject.org>
* Sat Jun 19 2010 Gavin Romig-Koch <gavin at redhat.com> 0.16-1
- Insure correct PRODUCT and VERSION used in the Bugzilla and Strata plugins 
      under Anaconda (RHEL 586147)
- Prepare for the switch from RHEL-bugzilla to Strata (RHEL 567972 partial)
- allow canceling out of input with ctrl-D (RHEL 604030)
- pretty up Newt IO a bit (RHEL 603067)
- clean up documentation a bit (RHEL 604045)
- remove the unused 'username' command line and configuration option. 
      (RHEL 604195)
- fix the worst of the problems with the ftp plugin (RHEL 604782)(RHEL 604780)
- Need to add -DFORTIFY_SOURCE=2 (RHEL 599342)
- fix command line crash on empty or non-existant input file 
    (RHEL 594892)(Fedora 594890)
    with help from Adam Stokes <astokes at redhat.com>
- make target buttons list vertically, improve 'Query' titles 
    (RHEL 594897)(Fedora 594895)
- change the config file parser to make config names case sensitive 
    (Fedora 594863)(RHEL 594865)
    from Adam Stokes <astokes at redhat.com>
- change "localsave" button to "local" (Fedora 594899)(RHEL 594901)
    from Adam Stokes <astokes at redhat.com>
- fix bug in localsave to /tmp (Fedora 595854)(RHEL 595855)
    from Adam Stokes <astokes at redhat.com>
- Strata client now handles 305 redirects (RHEL 591907)
- Add po/ru.po to the list of PO files
- fix so that we continue to build on RHEL/EPEL-5: old libcurl version
- l10n: Updates to Ukrainian (uk) translation
    from yurchor <yurchor at fedoraproject.org> -
* Thu May 20 2010 Gavin Romig-Koch <gavin at redhat.com> 0.15-1
- Update version after release
- fixed: subpackage name change causes dependency failures (RHEL 594047)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #621088 - Duplicate buttons displayed after saving traceback to local
        https://bugzilla.redhat.com/show_bug.cgi?id=621088
--------------------------------------------------------------------------------


================================================================================
 setroubleshoot-2.2.95-1.fc13 (FEDORA-2010-13632)
 Helps troubleshoot SELinux problems
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Dan Walsh <dwalsh at redhat.com> - 2.2.95-1
- Check in seapplet if selinux is disabled and exit cleanly
* Mon Aug 23 2010 Dan Walsh <dwalsh at redhat.com> - 2.2.94-1
- Update po
- Fix handling of translations
Resolves: #552922
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #568541 - setroubleshoot GUI quits without explanation when selinux disabled
        https://bugzilla.redhat.com/show_bug.cgi?id=568541
--------------------------------------------------------------------------------


================================================================================
 spectrum-1.4.1-1.fc13 (FEDORA-2010-13645)
 XMPP transport/gateway
--------------------------------------------------------------------------------
Update Information:

New upstream release.        * fixes      * fix Twitter handling of OAuth      *
added identica support New upstream release.      *          fixing various bugs
* added support for Twitter w/OAuth and identi.ca
--------------------------------------------------------------------------------
ChangeLog:

--------------------------------------------------------------------------------


================================================================================
 system-config-printer-1.2.4-1.fc13 (FEDORA-2010-13631)
 A printer administration tool
--------------------------------------------------------------------------------
Update Information:

This update fixes several bugs.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Jiri Popelka <jpopelka at redhat.com> 1.2.4-1
- Updated to 1.2.4:
  - Error checking in on_job_cancel_prompt_response (bug #608283).
  - Fixed UDEV_RULES conditional; also, avoid unnecessary tests.
  - Fill in username before calling set_auth_info (bug #609515).
  - Make the 'Add' button actually do something.
  - Initialise downloadable_drivers dict earlier (bug #608815).
  - Strip ' BR-Script3' from the names of Brother PPDs.
  - Sanitize loading of non-existing icon (bug #612415).
  - udev helper: use CUPS defaults when connecting.
  - Blacklist certain printer state reasons (bug #520815).
  - Exclude dnssd backend from udev search.
  - Avoid double-destroy in ppdsloader.
  - Catch KeyError in jobviewer when printer uri not known (bug #615727).
  - Changed shebang in executables (bug #618357).
  - Make udev-configure-printer work for Bluetooth (Bastien Nocera).
  - Merged Till Kamppeter's patches.
    - Access OpenPrinting via the web query API with redirect support.
    - Prioritize DNS-SD-based URIs against IP-based URIs.
    - Added missing "import gobject" to probe_printer.py.
    - On discovered network printers do not only cache make and model but also the device ID.
    - Fix recognition of remote CUPS queues when setting up an IPP queue.
    - Added delay to the auto-start of the applet.
    - Do not error out on missing firewall D-Bus service.
    - Make multi-threaded driver package search via Jockey work.
    - Prioritize HP's hpcups driver against HPIJS.
    - Silence error messages of missing PrinterDriversInstaller D-Bus service.
    - Improvements for setting up Bluetooth printers.
    - udev-configure-printer: Match usblp, libusb, HPLIP, and USB device file URIs.
    - Fill the queue list when clicking "Probe" in LPD printer setup screen.
    - Remove the ":9100" from discovered "socket://..." URIs.
    - Integration of the dnssd CUPS backend and assosiation of DNS-SD names and IPs.
    - When setting up a printer search for local drivers before searching the internet.
* Sun Aug 22 2010 Tim Waugh <twaugh at redhat.com> - 1.2.3-5
- Updated pysmbc to 1.0.9.
* Mon Jul 12 2010 Jiri Popelka <jpopelka at redhat.com> 1.2.3-4
- Moved COPYING file to libs sub-package.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #608283 - [abrt] crash in system-config-printer-1.2.2-4.fc13: jobviewer.py:243:cancelJob_error:TypeError: descriptor 'cancelJob' requires a 'cups.Connection' object but received a 'NoneType'
        https://bugzilla.redhat.com/show_bug.cgi?id=608283
  [ 2 ] Bug #609515 - [abrt] system-config-printer-1.2.3-3.fc14: authconn.py:102:set_auth_info:TypeError: Gtk.Entry.set_text() argument 1 must be string, not None
        https://bugzilla.redhat.com/show_bug.cgi?id=609515
  [ 3 ] Bug #608815 - [abrt] crash in system-config-printer-1.2.2-4.fc13: system-config-printer.py:6213:fillDownloadableDrivers:AttributeError: NewPrinterGUI instance has no attribute 'downloadable_drivers'
        https://bugzilla.redhat.com/show_bug.cgi?id=608815
  [ 4 ] Bug #612415 - [abrt] crash in system-config-printer-1.2.3-3.fc13: jobviewer.py:465:__init__:GError: Icon 'printer' not present in theme
        https://bugzilla.redhat.com/show_bug.cgi?id=612415
  [ 5 ] Bug #520815 - Some printers are showing false warnings when using IPP URI scheme
        https://bugzilla.redhat.com/show_bug.cgi?id=520815
  [ 6 ] Bug #615727 - [abrt] crash in system-config-printer-1.2.3-3.fc13: jobviewer.py:136:_map_printer:KeyError
        https://bugzilla.redhat.com/show_bug.cgi?id=615727
--------------------------------------------------------------------------------


================================================================================
 tellico-2.3-1.fc13 (FEDORA-2010-13659)
 A collection manager
--------------------------------------------------------------------------------
Update Information:

Update to 2.3.  Fixes some bugs with loading images, more details here: http
://tellico-project.org/tellico-23-released
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 26 2010 Alex Lancaster <alexlan[AT]fedoraproject org> - 2.3-1
- Update to tellico 2.3 (#622431)
* Wed Aug 11 2010 David Malcolm <dmalcolm at redhat.com> - 2.2-3
- recompiling .py files against Python 2.7 (rhbz#623410)
* Wed Apr  7 2010 José Matos <jamatos at fc.up.pt> - 2.2-2
- Rebuild for new libyaz (F14+).
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #622431 - tellico-2.3 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=622431
--------------------------------------------------------------------------------


================================================================================
 vdr-epgsearch-0.9.25-0.4.beta17.fc13 (FEDORA-2010-13652)
 Powerful schedules menu replacement plugin for VDR
--------------------------------------------------------------------------------
Update Information:

Update to upstream 0.9.25-beta17 release, containing several bug fixes and
enhancements.
--------------------------------------------------------------------------------
ChangeLog:

* Sun Jun 20 2010 Ville Skyttä <ville.skytta at iki.fi> - 0.9.25-0.4.beta17
- Update to 0.9.25.beta17; "long short text" patch applied upstream.
* Wed Mar 17 2010 Ville Skyttä <ville.skytta at iki.fi> - 0.9.25-0.4.beta16
- Patch to fix max file name length overflow with long "short" texts.
--------------------------------------------------------------------------------



More information about the test mailing list