Fedora 14 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Fri Jul 8 18:13:02 UTC 2011


The following Fedora 14 Security updates need testing:

    https://admin.fedoraproject.org/updates/phpMyAdmin-3.4.3.1-1.fc14
    https://admin.fedoraproject.org/updates/drupal7-7.4-1.fc14
    https://admin.fedoraproject.org/updates/wordpress-3.1.4-1.fc14
    https://admin.fedoraproject.org/updates/scsi-target-utils-1.0.18-1.fc14
    https://admin.fedoraproject.org/updates/pidgin-2.9.0-1.fc14
    https://admin.fedoraproject.org/updates/fabric-0.9.7-1.fc14
    https://admin.fedoraproject.org/updates/mingw32-libpng-1.4.3-2.fc14
    https://admin.fedoraproject.org/updates/libpng10-1.0.55-1.fc14
    https://admin.fedoraproject.org/updates/asterisk-1.6.2.19-1.fc14
    https://admin.fedoraproject.org/updates/NetworkManager-0.8.4-2.git20110622.fc14
    https://admin.fedoraproject.org/updates/krb5-appl-1.0.1-4.fc14
    https://admin.fedoraproject.org/updates/libvirt-0.8.3-10.fc14
    https://admin.fedoraproject.org/updates/bind-9.7.4-0.3.b1.fc14
    https://admin.fedoraproject.org/updates/tomcat6-6.0.26-21.fc14
    https://admin.fedoraproject.org/updates/openldap-2.4.23-10.fc14
    https://admin.fedoraproject.org/updates/oprofile-0.9.6-21.fc14
    https://admin.fedoraproject.org/updates/blender-2.49b-14.fc14
    https://admin.fedoraproject.org/updates/gdk-pixbuf2-2.22.0-2.fc14


The following Fedora 14 Critical Path updates have yet to be approved:

    https://admin.fedoraproject.org/updates/acl-2.2.49-9.fc14
    https://admin.fedoraproject.org/updates/unique-1.1.6-3.fc14
    https://admin.fedoraproject.org/updates/xorg-x11-drv-savage-2.3.2-3.fc14
    https://admin.fedoraproject.org/updates/cronie-1.4.8-2.fc14
    https://admin.fedoraproject.org/updates/mash-0.5.22-1.fc14
    https://admin.fedoraproject.org/updates/tzdata-2011h-1.fc14
    https://admin.fedoraproject.org/updates/python-slip-0.2.17-1.fc14
    https://admin.fedoraproject.org/updates/gdk-pixbuf2-2.22.0-2.fc14
    https://admin.fedoraproject.org/updates/NetworkManager-0.8.4-2.git20110622.fc14
    https://admin.fedoraproject.org/updates/perl-5.12.4-146.fc14
    https://admin.fedoraproject.org/updates/policycoreutils-2.0.85-30.1.fc14
    https://admin.fedoraproject.org/updates/system-config-keyboard-1.3.1-5.fc14
    https://admin.fedoraproject.org/updates/fedora-logos-14.0.2-1.fc14
    https://admin.fedoraproject.org/updates/xorg-x11-drv-openchrome-0.2.904-8.fc14.2
    https://admin.fedoraproject.org/updates/pcre-8.10-2.fc14
    https://admin.fedoraproject.org/updates/xorg-x11-drv-qxl-0.0.21-3.fc14
    https://admin.fedoraproject.org/updates/evolution-exchange-2.32.3-1.fc14,evolution-data-server-2.32.3-1.fc14,evolution-2.32.3-1.fc14
    https://admin.fedoraproject.org/updates/xorg-x11-drv-nouveau-0.0.16-14.20101010git8c8f15c.fc14
    https://admin.fedoraproject.org/updates/libconcord-0.23-5.fc14,udev-161-9.fc14,concordance-0.23-2.fc14
    https://admin.fedoraproject.org/updates/openldap-2.4.23-10.fc14


The following builds have been pushed to Fedora 14 updates-testing

    acl-2.2.49-9.fc14
    bind-9.7.4-0.3.b1.fc14
    cmake-fedora-0.7.0-1.fc14
    cmake-fedora-0.7.1-1.fc14
    freemind-0.9.0-2.fc14
    gnucash-2.4.7-1.fc14
    gnucash-docs-2.4.1-1.fc14
    gwibber-3.1.0-2.fc14
    libpng10-1.0.55-1.fc14
    libpri-1.4.12-1.fc14
    mutt-1.5.21-6.fc14
    oz-0.5.0-2.fc14
    php-ZendFramework-1.11.8-1.fc14
    php-pear-1.9.4-1.fc14
    phpMyAdmin-3.4.3.1-1.fc14
    puddletag-0.10.6-2.fc14
    python-paramiko-1.7.7.1-1.fc14
    qgis-1.7.0-4.fc14

Details about builds:


================================================================================
 acl-2.2.49-9.fc14 (FEDORA-2011-9170)
 Access control list utilities
--------------------------------------------------------------------------------
Update Information:

add function acl_extended_file_nofollow()
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jul  8 2011 Kamil Dudka <kdudka at redhat.com> 2.2.49-9
- fix typos in setfacl(1) man page (#675451)
- add function acl_extended_file_nofollow() (#692982)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #675451 - setfacl(1) manpage fixes
        https://bugzilla.redhat.com/show_bug.cgi?id=675451
  [ 2 ] Bug #692982 - [RFE] add function acl_extended_file_nofollow()
        https://bugzilla.redhat.com/show_bug.cgi?id=692982
--------------------------------------------------------------------------------


================================================================================
 bind-9.7.4-0.3.b1.fc14 (FEDORA-2011-9127)
 The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server
--------------------------------------------------------------------------------
Update Information:

This update fixes CVE-2011-2464.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Adam Tkac <atkac redhat com> 32:9.7.4-0.3.b1
- fix CVE-2011-2464
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #718966 - CVE-2011-2464 bind: Specially constructed packet will cause named to exit
        https://bugzilla.redhat.com/show_bug.cgi?id=718966
--------------------------------------------------------------------------------


================================================================================
 cmake-fedora-0.7.0-1.fc14 (FEDORA-2011-9167)
 CMake helper modules for fedora developers
--------------------------------------------------------------------------------
Update Information:

- Fixed target: after_release_commit.
- Add "INCLUDE(ManageRelease)" in template
so new project will not get CMake command "MANAGE_RELEASE"
- Corrected TODO.
- Corrected ChangeLog.prev and SPECS/RPM-ChangeLog.prev.
- By default, the CMAKE_INSTALL_PREFIX is set as '/usr'.
- Remove f13 from FEDORA_CURRENT_RELEASE_TAGS, as Fedora 13 is end of life.
- ManageMessage: New module.
+ M_MSG: Controllable verbose output
- ManageRelease: New module.
+ MANAGE_RELEASE: Make release by uploading files to hosting services
- Now ManageReleaseOnFedora includes ManageMaintainerTargets
- Modules are shown what they include and included by.
- Now tag depends on koji_scratch_build, while fedpkg_commit master
(or other primary branch) depends directly on tag.
- MAINTAINER_SETTING_READ_FILE now can either use MAINTAINER_SETTING, or take
one argument that define maintainer setting file.
- MANAGE_MAINTAINER_TARGETS_UPLOAD no longer require argument hostService,
It now relies on HOSTING_SERVICES from maintainer setting file.
- Minimum cmake requirement is now raise to 2.6
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Ding-Yi Chen <dchen at redhat.com> - 0.7.0-1
- Fixed target: after_release_commit.
- Add "INCLUDE(ManageRelease)" in template
  so new project will not get CMake command "MANAGE_RELEASE"
- Corrected TODO.
- Corrected ChangeLog.prev and SPECS/RPM-ChangeLog.prev.
- By default, the CMAKE_INSTALL_PREFIX is set as '/usr'.
* Wed Jul  6 2011 Ding-Yi Chen <dchen at redhat.com> - 0.6.1-1
- Remove f13 from FEDORA_CURRENT_RELEASE_TAGS, as Fedora 13 is end of life.
- ManageMessage: New module.
  + M_MSG: Controllable verbose output
- ManageRelease: New module.
  + MANAGE_RELEASE: Make release by uploading files to hosting services
- Now ManageReleaseOnFedora includes ManageMaintainerTargets
- Modules are shown what they include and included by.
- Now tag depends on koji_scratch_build, while fedpkg_commit master
  (or other primary branch) depends directly on tag.
- MAINTAINER_SETTING_READ_FILE now can either use MAINTAINER_SETTING, or take
  one argument that define maintainer setting file.
- MANAGE_MAINTAINER_TARGETS_UPLOAD no longer require argument hostService,
  It now relies on HOSTING_SERVICES from maintainer setting file.
- Minimum cmake requirement is now raise to 2.6.
- Targets which perform after release now have the prefix "after_release".
* Wed Jul  6 2011 Ding-Yi Chen <dchen at redhat.com> - 0.6.1-1
- Remove f13 from FEDORA_CURRENT_RELEASE_TAGS, as Fedora 13 is end of life.
- ManageMessage: New module.
  + M_MSG: Controllable verbose output
- ManageRelease: New module.
  + MANAGE_RELEASE: Make release by uploading files to hosting services
- Now ManageReleaseOnFedora includes ManageMaintainerTargets
- Modules are shown what they include and included by.
- Now tag depends on koji_scratch_build, while fedpkg_commit master
  (or other primary branch) depends directly on tag.
- MAINTAINER_SETTING_READ_FILE now can either use MAINTAINER_SETTING, or take
  one argument that define maintainer setting file.
- MANAGE_MAINTAINER_TARGETS_UPLOAD no longer require argument hostService,
  It now relies on HOSTING_SERVICES from maintainer setting file.
- Minimum cmake requirement is now raise to 2.6
--------------------------------------------------------------------------------


================================================================================
 cmake-fedora-0.7.1-1.fc14 (FEDORA-2011-9159)
 CMake helper modules for fedora developers
--------------------------------------------------------------------------------
Update Information:

- Target release now depends on upload.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jul  8 2011 Ding-Yi Chen <dchen at redhat.com> - 0.7.1-1
- Target release now depends on upload.
* Fri Jul  8 2011 Ding-Yi Chen <dchen at redhat.com> - 0.7.0-1
- Fixed target: after_release_commit.
- Add "INCLUDE(ManageRelease)" in template
  so new project will not get CMake command "MANAGE_RELEASE"
- Corrected TODO.
- Corrected ChangeLog.prev and SPECS/RPM-ChangeLog.prev.
- By default, the CMAKE_INSTALL_PREFIX is set as '/usr'.
* Wed Jul  6 2011 Ding-Yi Chen <dchen at redhat.com> - 0.6.1-1
- Remove f13 from FEDORA_CURRENT_RELEASE_TAGS, as Fedora 13 is end of life.
- ManageMessage: New module.
  + M_MSG: Controllable verbose output
- ManageRelease: New module.
  + MANAGE_RELEASE: Make release by uploading files to hosting services
- Now ManageReleaseOnFedora includes ManageMaintainerTargets
- Modules are shown what they include and included by.
- Now tag depends on koji_scratch_build, while fedpkg_commit master
  (or other primary branch) depends directly on tag.
- MAINTAINER_SETTING_READ_FILE now can either use MAINTAINER_SETTING, or take
  one argument that define maintainer setting file.
- MANAGE_MAINTAINER_TARGETS_UPLOAD no longer require argument hostService,
  It now relies on HOSTING_SERVICES from maintainer setting file.
- Minimum cmake requirement is now raise to 2.6.
- Targets which perform after release now have the prefix "after_release".
* Wed Jul  6 2011 Ding-Yi Chen <dchen at redhat.com> - 0.6.1-1
- Remove f13 from FEDORA_CURRENT_RELEASE_TAGS, as Fedora 13 is end of life.
- ManageMessage: New module.
  + M_MSG: Controllable verbose output
- ManageRelease: New module.
  + MANAGE_RELEASE: Make release by uploading files to hosting services
- Now ManageReleaseOnFedora includes ManageMaintainerTargets
- Modules are shown what they include and included by.
- Now tag depends on koji_scratch_build, while fedpkg_commit master
  (or other primary branch) depends directly on tag.
- MAINTAINER_SETTING_READ_FILE now can either use MAINTAINER_SETTING, or take
  one argument that define maintainer setting file.
- MANAGE_MAINTAINER_TARGETS_UPLOAD no longer require argument hostService,
  It now relies on HOSTING_SERVICES from maintainer setting file.
- Minimum cmake requirement is now raise to 2.6
--------------------------------------------------------------------------------


================================================================================
 freemind-0.9.0-2.fc14 (FEDORA-2011-9162)
 Free mind mapping software
--------------------------------------------------------------------------------
Update Information:

Update to fix various bugs
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Johannes Lips <Johannes.Lips googlemail com> 0.9.0-2
- added additional jar files to freemind.sh
- fixed the wrong directory of the scripting plugin
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #719430 - File scripting_plugin.jar on wrong path raising java.lang.ClassNotFoundException
        https://bugzilla.redhat.com/show_bug.cgi?id=719430
  [ 2 ] Bug #719433 - Exporting MindMap to either PDF or to SVG raises java.lang.NullPointerException
        https://bugzilla.redhat.com/show_bug.cgi?id=719433
--------------------------------------------------------------------------------


================================================================================
 gnucash-2.4.7-1.fc14 (FEDORA-2011-9133)
 Finance management application
--------------------------------------------------------------------------------
Update Information:

This updates GnuCash to the latest upstream release, fixing assorted bugs. For more information, see the upstream changelog at http://gnucash.org/#110702-2.4.7.news.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Bill Nottingham <notting at redhat.com> - 2.4.7-1
- update to 2.4.7 (#712268)
- re-enable python bindings. (#712621)
* Thu May  5 2011 Bill Nottingham <notting at redhat.com> - 2.4.5-2
- fix tips (#702391)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #712268 - broken links
        https://bugzilla.redhat.com/show_bug.cgi?id=712268
  [ 2 ] Bug #712621 - Python bindings for gnucash not enabled.
        https://bugzilla.redhat.com/show_bug.cgi?id=712621
--------------------------------------------------------------------------------


================================================================================
 gnucash-docs-2.4.1-1.fc14 (FEDORA-2011-9133)
 Help files and documentation for the GnuCash personal finanace manager
--------------------------------------------------------------------------------
Update Information:

This updates GnuCash to the latest upstream release, fixing assorted bugs. For more information, see the upstream changelog at http://gnucash.org/#110702-2.4.7.news.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jul  5 2011 Bill Nottingham <notting at redhat.com> - 2.4.1-1
- update to 2.4.1
* Tue Feb  8 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.2.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #712268 - broken links
        https://bugzilla.redhat.com/show_bug.cgi?id=712268
  [ 2 ] Bug #712621 - Python bindings for gnucash not enabled.
        https://bugzilla.redhat.com/show_bug.cgi?id=712621
--------------------------------------------------------------------------------


================================================================================
 gwibber-3.1.0-2.fc14 (FEDORA-2011-9171)
 An open source microblogging client for GNOME developed with Python and GTK
--------------------------------------------------------------------------------
Update Information:

Fix gwibber to use Fedora's Twitter Oauth credentials, not the default upstream one, should also resolve problem viewing direct messages.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jul  7 2011 Tom Callaway <spot at fedoraproject.org> - 1:3.1.0-2
- really use our oauth key
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #719448 - Gwibber can not view Direct Messages due to the new OAuth method
        https://bugzilla.redhat.com/show_bug.cgi?id=719448
--------------------------------------------------------------------------------


================================================================================
 libpng10-1.0.55-1.fc14 (FEDORA-2011-8867)
 Old version of libpng, needed to run old binaries
--------------------------------------------------------------------------------
Update Information:

This update fixes a 1-byte uninitialized memory reference in png_format_buffer(). It allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message. This is CVE-2011-2501.

Also fixed in this release are some other minor security problems and there's additionally a bugfix backported from 1.5.3: when expanding a paletted image, always expand to RGBA if transparency is present.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jul  7 2011 Paul Howarth <paul at city-fan.org> 1.0.55-1
- update to 1.0.55
  - fixed uninitialized memory read in png_format_buffer()
    (CVE-2011-2501, related to CVE-2004-0421)
  - pass "" instead of '\0' to png_default_error() in png_err()
  - check for up->location !PNG_AFTER_IDAT when writing unknown chunks before
    IDAT
  - ported bugfix in pngrtran.c from 1.5.3: when expanding a paletted image,
    always expand to RGBA if transparency is present
  - check for integer overflow in png_set_rgb_to_gray()
  - check for sCAL chunk too short
- drop upstreamed patch for CVE-2011-2501
- add patch to fix build failure due to regression in libpng.sym creation
* Wed Jun 29 2011 Paul Howarth <paul at city-fan.org> 1.0.54-3
- fix 1-byte uninitialized memory reference in png_format_buffer()
  (CVE-2011-2501, related to CVE-2004-0421)
- nobody else likes macros for commands
* Tue Feb  8 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> 1.0.54-2
- rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #717084 - CVE-2011-2501 libpng: regression of CVE-2004-0421 in 1.2.23+
        https://bugzilla.redhat.com/show_bug.cgi?id=717084
--------------------------------------------------------------------------------


================================================================================
 libpri-1.4.12-1.fc14 (FEDORA-2011-9145)
 An implementation of Primary Rate ISDN
--------------------------------------------------------------------------------
Update Information:

The Asterisk Development Team announces the release of libpri version
1.4.12.  This release is available for immediate download at
http://downloads.asterisk.org/pub/telephony/libpri/

The following are some of the issues resolved in this release:

 * Add call transfer exchange of subaddresses support and fix PTMP call
   transfer signaling.

 * Invalid PTMP redirecting signaling as TE towards NT.

 * Add Q931_IE_TIME_DATE to CONNECT message when in network mode.
   (issue #18047 (JIRA PRI-114). Reported by: wuwu. Patched by rmudgett)

 * Swap of master/slave in pri_enslave() incorrect.
   (issue #18769 (JIRA PRI-120). Reported by: jcollie. Patched by jcollie)

 * Fix I-frame retransmission quirks.

 * Crash if NFAS swaps D channels on a call with an active timer.

 * DMS-100 not receiving caller name anymore.
   (issue #18822 (JIRA PRI-121). Reported by: cmorford. Patched by rmudgett)

 * B channel lost by incoming call in BRI NT PTMP mode.

 * Implement the mandatory T312 timer for NT PTMP broadcast SETUP calls.

This release contains several new features, among them:

1.) ETSI and Q.SIG Call Completion Supplementary Service (CCSS) support
2.) ETSI Advice Of Charge (AOC) support
3.) ETSI Explicit Call Transfer (ECT) support
4.) ETSI Call Waiting support for ISDN phones
5.) ETSI Malicious Call ID support
6.) Add Display IE text handling options.

For a full list of changes in this release, please see the ChangeLog:

http://downloads.asterisk.org/pub/telephony/libpri/releases/ChangeLog-1.4.12
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Jeffrey C. Ollie <jeff at ocjtech.us> - 1.4.12-1
- The Asterisk Development Team announces the release of libpri version
- 1.4.12.  This release is available for immediate download at
- http://downloads.asterisk.org/pub/telephony/libpri/
-
- The following are some of the issues resolved in this release:
-
-  * Add call transfer exchange of subaddresses support and fix PTMP call
-    transfer signaling.
-
-  * Invalid PTMP redirecting signaling as TE towards NT.
-
-  * Add Q931_IE_TIME_DATE to CONNECT message when in network mode.
-    (issue #18047 (JIRA PRI-114). Reported by: wuwu. Patched by rmudgett)
-
-  * Swap of master/slave in pri_enslave() incorrect.
-    (issue #18769 (JIRA PRI-120). Reported by: jcollie. Patched by jcollie)
-
-  * Fix I-frame retransmission quirks.
-
-  * Crash if NFAS swaps D channels on a call with an active timer.
-
-  * DMS-100 not receiving caller name anymore.
-    (issue #18822 (JIRA PRI-121). Reported by: cmorford. Patched by rmudgett)
-
-  * B channel lost by incoming call in BRI NT PTMP mode.
-
-  * Implement the mandatory T312 timer for NT PTMP broadcast SETUP calls.
-
- This release contains several new features, among them:
-
- 1.) ETSI and Q.SIG Call Completion Supplementary Service (CCSS) support
- 2.) ETSI Advice Of Charge (AOC) support
- 3.) ETSI Explicit Call Transfer (ECT) support
- 4.) ETSI Call Waiting support for ISDN phones
- 5.) ETSI Malicious Call ID support
- 6.) Add Display IE text handling options.
-
- For a full list of changes in this release, please see the ChangeLog:
-
- http://downloads.asterisk.org/pub/telephony/libpri/releases/ChangeLog-1.4.12
* Tue Feb  8 2011 Jeffrey C. Ollie <jeff at ocjtech.us> - 1.4.12-0.3.beta3
-
- The following are some of the issues resolved in this beta release:
-
-   * Prevent a CONNECT message from sending a CONNECT ACKNOWLEDGE in the
-     wrong state.
-     (issue #17360. Reported by: shawkris. Patched by rmudgett)
-
-   * Made Q.921 delay events to Q.931 if the event could immediately
-     generate response frames.
-     (closes issue #17360. Reported by: shawkris. Patched by rmudgett)
-
-   * BRI PTMP: Active channels not cleared when the interface goes down.
-     (closes issue #17865. Reported by: wimpy. Patched by rmudgett)
-
-   * Segfault in pri_schedule_del() - ctrl value is invalid.
-     (closes issue #17522)
-     (closes issue #18032. Reported by: schmoozecom. Patched by rmudgett)
-
-   * Crash when receiving an unknown/unsupported message type.
-     (closes issue #17968. Reported by: gelo. Patched by rmudgett)
-
-   * B410P gets incoming call packets on ISDN but Asterisk doesn't see the
-     call.
-     (closes issue #18232. Reported by: lelio. Patched by rmudgett)
-
-   * SABME flood on backup D-channel in NFAS configuration.
-     (closes issue #18255. Reported by: bklang. Patched by rmudgett)
-
-   * Asterisk is getting a "No D-channels available!" warning message every
-     4 seconds.
-     (closes issue #17270. Reported by: jmls. Patched by rmudgett)
-
- This beta release contains several new features, among them:
-
- 1.) ETSI and Q.SIG Call Completion Supplementary Service (CCSS) support
- 2.) ETSI Advice Of Charge (AOC) support
- 3.) ETSI Explicit Call Transfer (ECT) support
- 4.) ETSI Call Waiting support for ISDN phones
- 5.) ETSI Malicious Call ID support
-
- For a full list of changes in the current release candidate, please see
- the ChangeLog:
-
- http://downloads.asterisk.org/pub/telephony/libpri/releases/ChangeLog-1.4.12-beta3
* Tue Feb  8 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.4.12-0.2.beta2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
* Fri Oct  8 2010 Jeffrey C. Ollie <jeff at ocjtech.us> - 1.4.12-0.2.beta2
- The following are some of the issues resolved in this beta release:
-
-   * Fix issue where calling name is not successfully processed on inbound
-     QSIG PRI calls from Mitel PBX.
-     (Closes issue #17619. Reported by: jims8650. Patched by rmudgett)
-
-   * Added missing code specified by Q.921 (Figure B.8 Page 85) when receive
-     RNR in "Timer Recovery" state.
-     (Closes issue #16791. Reported by: alecdavis. Patched by alecdavis)
-
-   * Fixed issue where incoming calls specifying the channel using a slot
-     map could not negotiate a B channel correctly.
-
-   * Add support to receive ECMA-164 2nd edition OID name ROSE messages.
-
-   * Fixed issue where ISDN BRI PTMP TE does not recover from line faults.
-     (Closes issue #17570. Reported by: jcovert. Patched by rmudgett)
-
-   * Q.921 improvements from comparing Q.921 SDL diagrams with implementation.
-
-   * Q.921/Q.931 message debug output improvements.
-
- This beta release contains several new features, among them:
-
- 1.) ETSI and Q.SIG Call Completion Supplementary Service (CCSS) support
- 2.) ETSI Advice Of Charge (AOC) support
- 3.) ETSI Explicit Call Transfer (ECT) support
- 4.) ETSI Call Waiting support for ISDN phones
- 5.) ETSI Malicious Call ID support
-
- For a full list of changes in the current release candidate, please see
- the ChangeLog:
-
- http://downloads.asterisk.org/pub/telephony/libpri/releases/ChangeLog-1.4.12-beta2
--------------------------------------------------------------------------------


================================================================================
 mutt-1.5.21-6.fc14 (FEDORA-2011-9147)
 A text mode mail user agent
--------------------------------------------------------------------------------
Update Information:

This update fixes seldom crashes of mutt when reading message headers.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jun 29 2011 Honza Horak <hhorak at redhat.com> - 5:1.5.21-6
- Fixed message indexes when skipping fetch response (mutt bug #3288)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #718321 - mutt segfault in mx_update_context
        https://bugzilla.redhat.com/show_bug.cgi?id=718321
--------------------------------------------------------------------------------


================================================================================
 oz-0.5.0-2.fc14 (FEDORA-2011-9151)
 Library and utilities for automated guest OS installs
--------------------------------------------------------------------------------
Update Information:

Library and utilities for automated guest OS installs
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #713320 - Review Request: oz - Library and utilities for automated guest OS installs
        https://bugzilla.redhat.com/show_bug.cgi?id=713320
--------------------------------------------------------------------------------


================================================================================
 php-ZendFramework-1.11.8-1.fc14 (FEDORA-2011-9157)
 Leading open-source PHP framework
--------------------------------------------------------------------------------
Update Information:

Update to 1.11.8
Unbundled Dojo
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jul  8 2011 Felix Kaechele <heffer at fedoraproject.org> - 1.11.8-2
- update to 1.11.8
- full changelog http://framework.zend.com/changelog/1.11.8
- removed bundled Dojo
--------------------------------------------------------------------------------


================================================================================
 php-pear-1.9.4-1.fc14 (FEDORA-2011-9166)
 PHP Extension and Application Repository framework
--------------------------------------------------------------------------------
Update Information:

Upsteam changelog

Bug Fixes:
* Bug #17350: "pear install --force" doesn't uninstall files from previous pkg versions [dufuz]
* Bug #18362: A whitespace TEMP_DIR path breaks install/upgrade functionality [dufuz]
* Bug #18440: bad tmp folder path on install : Unable to create path for C:/Program/tmp [dufuz]
* Bug #18581: "config-get -c" not returning channel's configuration when using alias [dufuz]
* Bug #18639: regression: installing xdebug fails most likely due to another fix [dufuz]

Features
* All System (the class) functions can now take in spaced paths as long as they are surrounded in quotes.Prior to this it was possible to do that by passing all values in as an array (by product of #18362, #18440) [dufuz]
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jul  7 2011 Remi Collet <Fedora at FamilleCollet.com> 1:1.9.4-1
- update to 1.9.4
--------------------------------------------------------------------------------


================================================================================
 phpMyAdmin-3.4.3.1-1.fc14 (FEDORA-2011-9144)
 Handle the administration of MySQL over the World Wide Web
--------------------------------------------------------------------------------
Update Information:

Changes for 3.4.3.1 (2011-06-07)

- [PMASA-2011-5] Possible session manipulation in Swekey authentication (http://www.phpmyadmin.net/home_page/security/PMASA-2011-5.php)
- [PMASA-2011-6] Possible code injection in setup script in case session variables are compromised (http://www.phpmyadmin.net/home_page/security/PMASA-2011-6.php)
- [PMASA-2011-7] Regular expression quoting issue in Synchronize code (http://www.phpmyadmin.net/home_page/security/PMASA-2011-7.php)
- [PMASA-2011-8] Possible directory traversal (http://www.phpmyadmin.net/home_page/security/PMASA-2011-8.php)


Changes for 3.4.3.0 (2011-06-27)

- [sync] Missing helper icons in Synchronize
- [setup] Redefine a lable that was wrong
- [parser] master is not a reserved word
- [edit] Inline edit updates multiple duplicate rows
- [edit] Inline edit does not escape backslashes
- [interface] Columns class sometimes changed for nothing
- [interface] Some tooltips do not disappear
- [search] Fix search in non unicode tables
- [display] Inline query edit broken
- [privileges] Generate password option missing on new accounts
- [edit] Inline edit places HTML line breaks in edit area
- [interface] Inline query edit does not escape special characters
- [security] minor XSS (require a valid token)
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Robert Scheck <robert at fedoraproject.org> 3.4.3.1-1
- Upgrade to 3.4.3.1 (#718964)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #718964 - phpMyAdmin-3.4.3.1 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=718964
--------------------------------------------------------------------------------


================================================================================
 puddletag-0.10.6-2.fc14 (FEDORA-2011-9174)
 Feature rich, easy to use tag editor
--------------------------------------------------------------------------------
Update Information:

Updated package for puddletag 0.10.6, fix a bug introduced in a patch.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jul  7 2011 Terje Rosten <terje.rosten at ntnu.no> - 0.10.6-2
- Fix typo in xdg-open patch
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #718938 - [abrt] puddletag-0.10.6-1.fc15: tagmodel.py:1:<module>:NameError: name 'B' is not defined
        https://bugzilla.redhat.com/show_bug.cgi?id=718938
  [ 2 ] Bug #683930 - [abrt] puddletag-0.9.12-1.fc14: findfunc.py:373:replacevars:UnicodeDecodeError: 'ascii' codec can't decode byte 0xc3 in position 0: ordinal not in range(128)
        https://bugzilla.redhat.com/show_bug.cgi?id=683930
  [ 3 ] Bug #683942 - [abrt] puddletag-0.9.12-1.fc14: PyObject_IsTrue: Process /usr/bin/python was killed by signal 11 (SIGSEGV)
        https://bugzilla.redhat.com/show_bug.cgi?id=683942
--------------------------------------------------------------------------------


================================================================================
 python-paramiko-1.7.7.1-1.fc14 (FEDORA-2011-9169)
 SSH2 protocol library for python
--------------------------------------------------------------------------------
Update Information:

v1.7.7.1 (George) 21may11
-------------------------
  * Make the verification phase of SFTP.put optional (Larry Wright)
  * Patches to fix AIX support (anonymous)
  * Patch from Michele Bertoldi to allow compression to be turned on in the
    client constructor.
  * Patch from Shad Sharma to raise an exception if the transport isn't active
    when you try to open a new channel.
  * Stop leaking file descriptors in the SSH agent (John Adams)
  * More fixes for Windows address family support (Andrew Bennetts)
  * Use Crypto.Random rather than Crypto.Util.RandomPool
    (Gary van der Merwe, #271791)
  * Support for openssl keys (tehfink)
  * Fix multi-process support by calling Random.atfork (sugarc0de)

--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Jeffrey C. Ollie <jeff at ocjtech.us> - 1.7.7.1-1
- v1.7.7.1 (George) 21may11
- -------------------------
-   * Make the verification phase of SFTP.put optional (Larry Wright)
-   * Patches to fix AIX support (anonymous)
-   * Patch from Michele Bertoldi to allow compression to be turned on in the
-     client constructor.
-   * Patch from Shad Sharma to raise an exception if the transport isn't active
-     when you try to open a new channel.
-   * Stop leaking file descriptors in the SSH agent (John Adams)
-   * More fixes for Windows address family support (Andrew Bennetts)
-   * Use Crypto.Random rather than Crypto.Util.RandomPool
-     (Gary van der Merwe, #271791)
-   * Support for openssl keys (tehfink)
-   * Fix multi-process support by calling Random.atfork (sugarc0de)
* Tue Feb  8 2011 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.7.6-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 qgis-1.7.0-4.fc14 (FEDORA-2011-9137)
 A user friendly Open Source Geographic Information System
--------------------------------------------------------------------------------
Update Information:

New features since 1.6 in a nutshell:

- QGIS Web Map Server (qgis-mapserver package)
- On-the-fly-reprojection for rasters
- Join tables
- SQLAnywhere vector provider
- Snapping dock you can use while editing

Please find the release notes on the QGIS website:

http://www.qgis.org/component/content/article/127-qgis-1-7-release.html
--------------------------------------------------------------------------------
ChangeLog:

* Wed Jul  6 2011 Volker Fröhlich <volker27 at gmx.at> - 1.7.0-4
- Remove icon path macros, that don't work in EPEL
- Avoid creating unnecessary directories there
- Be explicit about the shared lib names in the files section
- Put libqgispython.so.1.7.0 in Python sub-package
- Correct FSF address
* Wed Jul  6 2011 Volker Fröhlich <volker27 at gmx.at> - 1.7.0-3
- Withdraw immature Lighty configuration
- Update README and provide a better sample configuration,
  that utilizes mod_rewrite
* Sun Jun 26 2011 Volker Fröhlich <volker27 at gmx.at> - 1.7.0-2
- Add histogram patch
- Add scriplets to refresh icon cache
- Mention Fedora specific readme file in QGIS mapserver description
- Update the aforementioned file and the Apache configuration
  with rewrite rules
* Sun Jun 26 2011 Volker Fröhlich <volker27 at gmx.at> - 1.7.0-1
- Update for 1.7
- License is now GPLv3+ (Sqlanyconnect)
- Add mapserver sub-package and require mod_fcgi
- Use upstreams current description text
- Drop now needless iconv 
- Rename new Serbian translations
- Install MIME type definitions and icons
- Add Readme file and sample configuration for Mapserver
- Add patch to avoid segfault when geo-referencing
- Add conditional for Spatialite and PPC64
- Add conditional for GRASS and EPEL
- Delete bundled libspatialite before building
- Removed glob from /usr/bin/qgis in files section
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #712620 - [abrt] qgis-1.6.0-3.fc14.1: QgsImageWarper::warpFile: Process /usr/bin/qgis was killed by signal 6 (SIGABRT)
        https://bugzilla.redhat.com/show_bug.cgi?id=712620
--------------------------------------------------------------------------------



More information about the test mailing list