Fedora 18 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Sat Dec 21 02:31:46 UTC 2013


The following Fedora 18 Security updates need testing:
 Age  URL
  27  https://admin.fedoraproject.org/updates/FEDORA-2013-21875/389-ds-base-1.3.0.9-1.fc18
  13  https://admin.fedoraproject.org/updates/FEDORA-2013-22949/net-snmp-5.7.2-7.fc18
  10  https://admin.fedoraproject.org/updates/FEDORA-2013-23122/firefox-26.0-2.fc18,xulrunner-26.0-1.fc18
  10  https://admin.fedoraproject.org/updates/FEDORA-2013-23140/python-setuptools-0.6.49-1.fc18
   7  https://admin.fedoraproject.org/updates/FEDORA-2013-23291/thunderbird-24.2.0-2.fc18
   7  https://admin.fedoraproject.org/updates/FEDORA-2013-23299/libreswan-3.7-1.fc18
   5  https://admin.fedoraproject.org/updates/FEDORA-2013-23378/openttd-1.3.3-1.fc18
   5  https://admin.fedoraproject.org/updates/FEDORA-2013-23401/v8-3.14.5.10-3.fc18
   4  https://admin.fedoraproject.org/updates/FEDORA-2013-23466/xen-4.2.3-12.fc18
   3  https://admin.fedoraproject.org/updates/FEDORA-2013-23504/quagga-0.99.21-6.fc18
   1  https://admin.fedoraproject.org/updates/FEDORA-2013-23591/seamonkey-2.23-1.fc18
   1  https://admin.fedoraproject.org/updates/FEDORA-2013-23646/perl-Proc-Daemon-0.14-9.fc18
   1  https://admin.fedoraproject.org/updates/FEDORA-2013-23575/ca-certificates-2013.1.95-1.fc18
   1  https://admin.fedoraproject.org/updates/FEDORA-2013-23662/rubygem-actionpack-3.2.8-4.fc18
   1  https://admin.fedoraproject.org/updates/FEDORA-2013-23663/ibus-chewing-1.4.4-1.fc18
   1  https://admin.fedoraproject.org/updates/FEDORA-2013-23678/gnupg-1.4.16-2.fc18


The following Fedora 18 Critical Path updates have yet to be approved:
 Age URL
 314  https://admin.fedoraproject.org/updates/FEDORA-2013-2192/nautilus-3.6.3-5.fc18
  13  https://admin.fedoraproject.org/updates/FEDORA-2013-22918/opus-1.1-1.fc18
  10  https://admin.fedoraproject.org/updates/FEDORA-2013-23140/python-setuptools-0.6.49-1.fc18
   7  https://admin.fedoraproject.org/updates/FEDORA-2013-23291/thunderbird-24.2.0-2.fc18
   7  https://admin.fedoraproject.org/updates/FEDORA-2013-23312/dracut-029-1.fc18.3
   7  https://admin.fedoraproject.org/updates/FEDORA-2013-23306/abrt-2.1.10-1.fc18,libreport-2.1.10-1.fc18,satyr-0.12-1.fc18
   7  https://admin.fedoraproject.org/updates/FEDORA-2013-23297/libfm-1.1.4-1.fc18
   5  https://admin.fedoraproject.org/updates/FEDORA-2013-23381/cryptsetup-1.6.3-1.fc18
   1  https://admin.fedoraproject.org/updates/FEDORA-2013-23598/fedora-release-18-6
   0  https://admin.fedoraproject.org/updates/FEDORA-2013-23716/selinux-policy-3.11.1-108.fc18


The following builds have been pushed to Fedora 18 updates-testing

    arprec-2.2.17-1.fc18
    bip-0.8.9-2.fc18
    davix-0.2.8-2.fc18
    gnome-abrt-0.3.4-1.fc18
    h5py-2.2.1-1.fc18
    ibus-typing-booster-1.2.8-1.fc18
    iftop-1.0-0.6.pre2.fc18
    libmodbus-3.0.5-1.fc18
    python-fedora-0.3.33-1.fc18
    python-halite-0.1.13-1.fc18
    salt-0.17.4-1.fc18
    selinux-policy-3.11.1-108.fc18
    wgrib2-1.9.7a-2.fc18

Details about builds:


================================================================================
 arprec-2.2.17-1.fc18 (FEDORA-2013-23751)
 Software package for performing arbitrary precision arithmetic
--------------------------------------------------------------------------------
Update Information:

new upstream release: v2.2.17
--------------------------------------------------------------------------------
ChangeLog:

* Fri Dec 20 2013 Björn Esser <bjoern.esser at gmail.com> - 2.2.17-1
- new upstream release: v2.2.17
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1045344 - arprec-2.2.17 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1045344
--------------------------------------------------------------------------------


================================================================================
 bip-0.8.9-2.fc18 (FEDORA-2013-23754)
 IRC Bouncer
--------------------------------------------------------------------------------
Update Information:

Switched to using systemd macros in spec.

--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 18 2013 Brian C. Lane <bcl at redhat.com> 0.8.9-2
- Scriptlets replaced with new systemd macros (#850046)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #850046 - Introduce new systemd-rpm macros in bip spec file
        https://bugzilla.redhat.com/show_bug.cgi?id=850046
--------------------------------------------------------------------------------


================================================================================
 davix-0.2.8-2.fc18 (FEDORA-2013-23711)
 Toolkit for Http-based file management
--------------------------------------------------------------------------------
Update Information:

Update 0.2.8-2
--------------------------------------------------------------------------------
ChangeLog:

* Mon Oct 28 2013 Adrien Devresse <adevress at cern.ch> - 0.2.7-3
- New update of davix, see RELEASE-NOTES for details
--------------------------------------------------------------------------------


================================================================================
 gnome-abrt-0.3.4-1.fc18 (FEDORA-2013-23753)
 A utility for viewing problems that have occurred with the system
--------------------------------------------------------------------------------
Update Information:

- Do not use deprecated GObject API
- Make gnome-abrt compatible with Python GObject < 3.7.2
- Do not fail if there is no Problem D-Bus service
- Make all labels selectable
- Run xdg-open for problem directory nonblocking
--------------------------------------------------------------------------------
ChangeLog:

* Thu Dec 19 2013 Jakub Filak <jfilak at redhat.com> 0.3.4-1
- Do not use deprecated GObject API
- Make gnome-abrt compatible with Python GObject < 3.7.2
- Do not fail if there is no Problem D-Bus service
- Make all labels selectable
- Run xdg-open for problem directory nonblocking
- Resolves: #1030665
* Wed Dec 18 2013 Jakub Filak <jfilak at redhat.com> 0.3.3-3
- Fix translations
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1030665 - Automatic Bug Reporting tool should have copyable text, not a bitmap
        https://bugzilla.redhat.com/show_bug.cgi?id=1030665
--------------------------------------------------------------------------------


================================================================================
 h5py-2.2.1-1.fc18 (FEDORA-2013-23686)
 A Python interface to the HDF5 library
--------------------------------------------------------------------------------
Update Information:

This release fixes a critical bug reported by Jim Parker on December 7th, which affects code using HDF5 compound types.

We recommend that all users of h5py 2.2.0 upgrade to avoid crashes or possible data corruption.

Scope of bug
------------

The issue affects a feature introduced in h5py 2.2.0, in which HDF5 compound datasets may be updated in-place, by specifying a field name or names when writing to the dataset:

>>> dataset['field_name'] = value

Under certain conditions, h5py can supply uninitialized memory to the HDF5 conversion machinery, leading (in the case reported) to a segmentation fault. It is also possible for other fields of the type to be corrupted.

This issue affects only code which updates a subset of the fields in the compound type.  Programs reading from a compound type, writing all fields, or using other datatypes, are not affected; nor are versions of h5py prior to 2.2.0.


More information
----------------

Github issue:       https://github.com/h5py/h5py/issues/372
Original thread:    https://groups.google.com/forum/#!topic/h5py/AbUOZ1MXf3U

--------------------------------------------------------------------------------
ChangeLog:

* Thu Dec 19 2013 Orion Poplawski <orion at cora.nwra.com> - 2.2.1-1
- 2.2.1
--------------------------------------------------------------------------------


================================================================================
 ibus-typing-booster-1.2.8-1.fc18 (FEDORA-2013-23731)
 A typing booster engine for the IBus platform
--------------------------------------------------------------------------------
Update Information:

- Change of IME name for oriya language  Resolves: rhbz#1045299
- Fixed issue multiple instances of setup menu Resolves: rhbz#1045294
--------------------------------------------------------------------------------
ChangeLog:

* Fri Dec 20 2013 Anish Patil <apatil at redhat.com> - 1.2.8-1
- Change of IME name for oriya language  Resolves: rhbz#1045299
- Fixed issue multiple instances of setup menu Resolves: rhbz#1045294
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1045294 - Ibus typing booster set up menu's instance should start only once
        https://bugzilla.redhat.com/show_bug.cgi?id=1045294
  [ 2 ] Bug #1045299 - change of IME name for oriya language
        https://bugzilla.redhat.com/show_bug.cgi?id=1045299
--------------------------------------------------------------------------------


================================================================================
 iftop-1.0-0.6.pre2.fc18 (FEDORA-2013-23701)
 Command line tool that displays bandwidth usage on an interface
--------------------------------------------------------------------------------
Update Information:

- Added patch to fix a memory leak in resolver.c (#782275, #861582)
- Run autoreconf to recognize aarch64 (#925579)
- Added patch to fix needlessly caused assertion failure when using nss-myhostname (#839750, #847124, #868065, #961236, #1007434)
--------------------------------------------------------------------------------
ChangeLog:

* Thu Dec 19 2013 Robert Scheck <robert at fedoraproject.org> 1.0-0.6.pre2
- Added patch to fix a memory leak in resolver.c (#782275, #861582)
- Run autoreconf to recognize aarch64 (#925579)
- Added patch to fix needlessly caused assertion failure when using
  nss-myhostname (#839750, #847124, #868065, #961236, #1007434)
* Sat Aug  3 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.0-0.5.pre2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Thu Feb 14 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.0-0.4.pre2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #782275 - iftop memory leak
        https://bugzilla.redhat.com/show_bug.cgi?id=782275
  [ 2 ] Bug #861582 - iftop terminates with SIGABRT
        https://bugzilla.redhat.com/show_bug.cgi?id=861582
  [ 3 ] Bug #925579 - iftop: Does not support aarch64 in f19 and rawhide
        https://bugzilla.redhat.com/show_bug.cgi?id=925579
  [ 4 ] Bug #839750 - iftop crashes
        https://bugzilla.redhat.com/show_bug.cgi?id=839750
  [ 5 ] Bug #847124 - [abrt] iftop-1.0-0.2.pre2.fc17: __GI___open_catalog: Process /usr/sbin/iftop was killed by signal 6 (SIGABRT)
        https://bugzilla.redhat.com/show_bug.cgi?id=847124
  [ 6 ] Bug #868065 - [abrt] iftop-1.0-0.2.pre2.fc17: PROTO_ADDRESS_SIZE: Process /usr/sbin/iftop was killed by signal 6 (SIGABRT)
        https://bugzilla.redhat.com/show_bug.cgi?id=868065
  [ 7 ] Bug #961236 - [abrt] iftop-1.0-0.3.pre2.fc18: Process /usr/sbin/iftop was killed by signal 6 (SIGABRT)
        https://bugzilla.redhat.com/show_bug.cgi?id=961236
  [ 8 ] Bug #1007434 - [abrt] iftop-1.0-0.4.pre2.fc19: __assert_fail_base: Process /usr/sbin/iftop was killed by signal 6 (SIGABRT)
        https://bugzilla.redhat.com/show_bug.cgi?id=1007434
--------------------------------------------------------------------------------


================================================================================
 libmodbus-3.0.5-1.fc18 (FEDORA-2013-23705)
 A Modbus library
--------------------------------------------------------------------------------
Update Information:

New upstream release; new EPEL6 branch
--------------------------------------------------------------------------------
ChangeLog:

* Thu Dec 19 2013 John Morris <john at zultron.com> - 3.0.5-1
- new upstream release
- new Fedora EPEL6 branch
* Sat Aug  3 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.0.3-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Thu Feb 14 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.0.3-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1039212 - Build for EPEL6
        https://bugzilla.redhat.com/show_bug.cgi?id=1039212
--------------------------------------------------------------------------------


================================================================================
 python-fedora-0.3.33-1.fc18 (FEDORA-2013-23710)
 Python modules for talking to Fedora Infrastructure Services
--------------------------------------------------------------------------------
Update Information:

Update to 0.3.33 final with numerous bugfixes to the flask_fas_openid adapter.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Dec 19 2013 Toshio Kuratomi <toshio at fedoraproject.org> - 0.3.33-1
- Update for final release with numerous flask_fas_openid fixes
--------------------------------------------------------------------------------


================================================================================
 python-halite-0.1.13-1.fc18 (FEDORA-2013-23730)
 SaltStack Web UI
--------------------------------------------------------------------------------
Update Information:

Update to version 0.1.13.
--------------------------------------------------------------------------------
ChangeLog:

--------------------------------------------------------------------------------


================================================================================
 salt-0.17.4-1.fc18 (FEDORA-2013-23740)
 A parallel remote execution system
--------------------------------------------------------------------------------
Update Information:

Update to bugfix release 0.17.4.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Dec 19 2013 Erik Johnson <erik at saltstack.com> - 0.17.4-1
- Update to bugfix release 0.17.4
* Tue Nov 19 2013 Erik Johnson <erik at saltstack.com> - 0.17.2-2
- Patched to fix pkgrepo.managed regression
--------------------------------------------------------------------------------


================================================================================
 selinux-policy-3.11.1-108.fc18 (FEDORA-2013-23716)
 SELinux policy configuration
--------------------------------------------------------------------------------
Update Information:

See http://koji.fedoraproject.org/koji/taskinfo?taskID=6317913
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 18 2013 Lukas Vrabec <lvrabec at redhat.com> 3.11.1-208
- Should allow domains to lock the terminal device
* Fri Nov  8 2013 Lukas Vrabec <lvrabec at redhat.com> 3.11.1-107
- Added systemd_filetrans_home_content
- Add rsync_filetrans_named_content to admin domains
- Donatudit leaks of setroublshootfixit in load_policy
- Add tcp/8893 as milter port
- Add xdm_write_home boolean
- fixed rsync_filetrans_named_content interface
- Allow abrt to stream connect to syslog
- Allow libs_legacy_use_shared_libs() for mozilla_plugin_t
- Allow kernel_setsched in networkmanager policy
- Allow jabberd_t to use certificates
- Allow sys_ptrace in ksmtuned policy
- Should use netlink socket_perms
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #889707 - SELinux is preventing /usr/bin/mv from 'relabelfrom' accesses on the file xdg-screensaver-stefan--0.
        https://bugzilla.redhat.com/show_bug.cgi?id=889707
  [ 2 ] Bug #895161 - PCI passthrough fails in qemu-kvm unless selinux is disabled
        https://bugzilla.redhat.com/show_bug.cgi?id=895161
  [ 3 ] Bug #919782 - SELinux is preventing mplayer from 'execmod' accesses on the file /usr/lib/libmpg123.so.0.36.4.
        https://bugzilla.redhat.com/show_bug.cgi?id=919782
  [ 4 ] Bug #950556 - SELinux is preventing /usr/bin/gsf-office-thumbnailer from 'write' accesses on the sock_file socket.
        https://bugzilla.redhat.com/show_bug.cgi?id=950556
  [ 5 ] Bug #950753 - SELinux is preventing /usr/bin/rsync from 'write' accesses on the file swift_server.lock.
        https://bugzilla.redhat.com/show_bug.cgi?id=950753
  [ 6 ] Bug #950898 - SELinux is preventing Chrome_ChildIOT from 'block_suspend' accesses on the capability2 .
        https://bugzilla.redhat.com/show_bug.cgi?id=950898
  [ 7 ] Bug #960082 - SELinux is preventing /usr/sbin/collectd from nlmsg_read access on the netlink_tcpdiag_socket
        https://bugzilla.redhat.com/show_bug.cgi?id=960082
  [ 8 ] Bug #960157 - SELinux is preventing /usr/sbin/collectd from name_bind access on the udp_socket
        https://bugzilla.redhat.com/show_bug.cgi?id=960157
  [ 9 ] Bug #960589 - SELinux is preventing /usr/bin/ps from using the 'sys_ptrace' capabilities.
        https://bugzilla.redhat.com/show_bug.cgi?id=960589
  [ 10 ] Bug #979156 - SELinux prevents jabberd2 from reading /etc/pki
        https://bugzilla.redhat.com/show_bug.cgi?id=979156
  [ 11 ] Bug #990506 - SELinux is preventing /usr/bin/kde4-config from 'write' accesses on the directory /home/toxn/.kde/share/config.
        https://bugzilla.redhat.com/show_bug.cgi?id=990506
  [ 12 ] Bug #1022798 - SELinux is preventing /usr/sbin/load_policy from 'write' accesses on the fifo_file fifo_file.
        https://bugzilla.redhat.com/show_bug.cgi?id=1022798
  [ 13 ] Bug #1022886 - SELinux is preventing /usr/sbin/lxdm-binary from 'create' accesses on the file .Xauthority.
        https://bugzilla.redhat.com/show_bug.cgi?id=1022886
  [ 14 ] Bug #1024014 - SELinux is preventing /usr/sbin/NetworkManager from using the 'setsched' accesses on a process.
        https://bugzilla.redhat.com/show_bug.cgi?id=1024014
  [ 15 ] Bug #1024924 - SELinux is preventing /usr/sbin/abrtd from 'write' accesses on the sock_file socket.
        https://bugzilla.redhat.com/show_bug.cgi?id=1024924
  [ 16 ] Bug #1036360 - SELinux is preventing /opt/google/chrome/chrome from 'open' accesses on the file /home/moussera/.nv/nvidia-application-profile-globals-rc.
        https://bugzilla.redhat.com/show_bug.cgi?id=1036360
--------------------------------------------------------------------------------


================================================================================
 wgrib2-1.9.7a-2.fc18 (FEDORA-2013-23729)
 Manipulate, inventory and decode GRIB2 files
--------------------------------------------------------------------------------
Update Information:

Rebuild with g2clib-1.4.0-3 bugfix
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jan 10 2013 Orion Poplawski <orion at cora.nwra.com> - 1.9.7a-2
- Rebuild with g2clib-1.4.0-3 bugfix
* Fri Nov 16 2012 Orion Poplawski <orion at cora.nwra.com> - 1.9.7a-1
- Update to 1.9.7a
* Tue Nov 13 2012 Orion Poplawski <orion at cora.nwra.com> - 1.9.7-1
- Update to 1.9.7
--------------------------------------------------------------------------------



More information about the test mailing list