Fedora 19 updates-testing report

updates at fedoraproject.org updates at fedoraproject.org
Fri Dec 12 04:39:15 UTC 2014


The following Fedora 19 Security updates need testing:
 Age  URL
 412  https://admin.fedoraproject.org/updates/FEDORA-2013-19963/openstack-glance-2013.1.4-1.fc19
  70  https://admin.fedoraproject.org/updates/FEDORA-2014-12057/krb5-1.11.3-29.fc19
  55  https://admin.fedoraproject.org/updates/FEDORA-2014-13018/deluge-1.3.10-1.fc19
  46  https://admin.fedoraproject.org/updates/FEDORA-2014-13551/wpa_supplicant-2.0-12.fc19
  37  https://admin.fedoraproject.org/updates/FEDORA-2014-14237/claws-mail-plugins-3.11.1-1.fc19,claws-mail-3.11.1-2.fc19,libetpan-1.6-1.fc19
  30  https://admin.fedoraproject.org/updates/FEDORA-2014-14738/gnutls-3.1.20-6.fc19
  27  https://admin.fedoraproject.org/updates/FEDORA-2014-12407/sddm-0.10.0-2.fc19
  23  https://admin.fedoraproject.org/updates/FEDORA-2014-15248/kde-runtime-4.11.5-3.fc19
  22  https://admin.fedoraproject.org/updates/FEDORA-2014-15378/rubygem-actionpack-3.2.13-7.fc19
  22  https://admin.fedoraproject.org/updates/FEDORA-2014-15390/nodejs-0.10.33-1.fc19,libuv-0.10.29-1.fc19
  21  https://admin.fedoraproject.org/updates/FEDORA-2014-15466/rubygem-sprockets-2.8.2-4.fc19
  16  https://admin.fedoraproject.org/updates/FEDORA-2014-15740/facter-1.6.18-8.fc19
  14  https://admin.fedoraproject.org/updates/FEDORA-2014-15848/docker-io-1.3.2-2.fc19
  10  https://admin.fedoraproject.org/updates/FEDORA-2014-15990/mariadb-5.5.40-1.fc19
  10  https://admin.fedoraproject.org/updates/FEDORA-2014-15999/libreoffice-4.1.6.2-10.fc19
  10  https://admin.fedoraproject.org/updates/FEDORA-2014-16045/util-linux-2.23.2-6.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16272/flac-1.3.1-1.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16227/dbus-1.6.28-1.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16224/pcre-8.32-12.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16234/pkcs11-helper-1.11-3.fc19,openvpn-2.3.6-1.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16203/kde-plasma-networkmanagement-0.9.0.11-2.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16473/pwgen-2.07-1.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16474/phpMyAdmin-4.2.13.1-1.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16452/grub2-2.00-27.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16477/python-tornado-2.2.1-7.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16479/python3-3.3.2-11.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16465/jasper-1.900.1-25.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16466/pyxdg-0.25-5.fc19
   4  https://admin.fedoraproject.org/updates/FEDORA-2014-16485/pam-1.1.6-13.fc19
   4  https://admin.fedoraproject.org/updates/FEDORA-2014-16483/icecast-2.4.1-1.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16499/xen-4.2.5-7.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16504/mantis-1.2.18-1.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16790/kernel-3.14.26-100.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16728/xorg-x11-server-1.14.4-4.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16576/bind-9.9.3-16.P2.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16690/curl-7.29.0-27.fc19


The following Fedora 19 Critical Path updates have yet to be approved:
 Age URL
 360  https://admin.fedoraproject.org/updates/FEDORA-2013-22326/fedora-bookmarks-15-5.fc19
 286  https://admin.fedoraproject.org/updates/FEDORA-2014-3245/testdisk-6.14-2.fc19.1,ntfs-3g-2014.2.15-1.fc19
  10  https://admin.fedoraproject.org/updates/FEDORA-2014-16021/tracker-0.16.5-1.fc19
  10  https://admin.fedoraproject.org/updates/FEDORA-2014-16009/unzip-6.0-13.fc19
  10  https://admin.fedoraproject.org/updates/FEDORA-2014-16045/util-linux-2.23.2-6.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16276/selinux-policy-3.12.1-74.30.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16213/crda-1.1.3_2014.11.18-1.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16224/pcre-8.32-12.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16227/dbus-1.6.28-1.fc19
   7  https://admin.fedoraproject.org/updates/FEDORA-2014-16272/flac-1.3.1-1.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16466/pyxdg-0.25-5.fc19
   5  https://admin.fedoraproject.org/updates/FEDORA-2014-16465/jasper-1.900.1-25.fc19
   4  https://admin.fedoraproject.org/updates/FEDORA-2014-16485/pam-1.1.6-13.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16576/bind-9.9.3-16.P2.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16770/hicolor-icon-theme-0.14-1.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16690/curl-7.29.0-27.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16790/kernel-3.14.26-100.fc19
   0  https://admin.fedoraproject.org/updates/FEDORA-2014-16728/xorg-x11-server-1.14.4-4.fc19


The following builds have been pushed to Fedora 19 updates-testing

    abduco-0.2-2.fc19
    apper-0.8.2-3.fc19
    armadillo-4.550.2-1.fc19
    bind-9.9.3-16.P2.fc19
    cmake-fedora-2.3.4-1.fc19
    curl-7.29.0-27.fc19
    fedup-0.9.1-1.fc19
    hicolor-icon-theme-0.14-1.fc19
    ibus-chewing-1.4.11.1-1.fc19
    java-1.7.0-openjdk-1.7.0.71-2.5.3.2.fc19
    kernel-3.14.26-100.fc19
    libmediainfo-0.7.71-2.fc19
    libzen-0.4.30-2.fc19
    lis-1.5.33-1.fc19
    liveusb-creator-3.13.1-2.fc19
    lxc-1.0.7-1.fc19
    mantis-1.2.18-1.fc19
    mozilla-adblockplus-2.6.6-1.fc19
    nodejs-astral-pass-0.1.0-2.fc19
    nodejs-bluebird-2.3.11-1.fc19
    nodejs-clone-0.1.18-2.fc19
    nodejs-date-now-1.0.1-1.fc19
    nodejs-deep-extend-0.3.2-1.fc19
    nodejs-domelementtype-1.1.3-2.fc19
    nodejs-domhandler-2.3.0-2.fc19
    nodejs-domutils-1.5.0-2.fc19
    nodejs-entities-1.1.1-2.fc19
    nodejs-langdetect-0.2.0-1.fc19
    nodejs-posix-getopt-1.1.0-1.fc19
    nodejs-read-all-stream-0.1.2-2.fc19
    nodejs-timed-out-2.0.0-2.fc19
    nodejs-unicode-7.0.0-0.1.5-2.fc19
    nodejs-util-0.10.3-1.fc19
    osm2pgsql-0.87.0-1.fc19
    owncloud-6.0.6-1.fc19
    pcp-3.10.1-1.fc19
    perl-smartmatch-0.05-1.fc19
    php-doctrine-lexer-1.0-5.20140909git83893c5.fc19
    php-irodsphp-3.3.0-0.3.beta1.fc19
    php-tcpdf-6.1.1-1.fc19
    python-fedmsg-meta-fedora-infrastructure-0.3.7-1.fc19
    rpmlint-1.6-2.fc19
    srcpd-2.1.2-6.fc19
    sugar-portfolio-46-1.fc19
    x2goserver-4.0.1.18-4.fc19
    xen-4.2.5-7.fc19
    xorg-x11-server-1.14.4-4.fc19

Details about builds:


================================================================================
 abduco-0.2-2.fc19 (FEDORA-2014-16621)
 Session management in a clean and simple way
--------------------------------------------------------------------------------
Update Information:

Don't strip binaries too early
--------------------------------------------------------------------------------
ChangeLog:

* Sat Dec  6 2014 Ville Skyttä <ville.skytta at iki.fi> - 0.2-2
- Don't strip binaries too early
* Tue Nov 18 2014 Igor Gnatenko <i.gnatenko.brain at gmail.com> - 0.2-1
- update to 0.2 (RHBZ #1165180)
* Fri Aug 15 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171419 - abduco-0.2-1 binaries stripped too early
        https://bugzilla.redhat.com/show_bug.cgi?id=1171419
--------------------------------------------------------------------------------


================================================================================
 apper-0.8.2-3.fc19 (FEDORA-2014-16687)
 KDE interface for PackageKit
--------------------------------------------------------------------------------
Update Information:

Workaround problem uninstalling items with other installed dependencies.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Dec  6 2014 Rex Dieter <rdieter at fedoraproject.org> 0.8.2-3
- don't try !allow_deps, -yum,-hif backends do not support it apparently (#877038,kde#315063)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #877038 - apper doesn't handle dependencies on package removal, needs to enable allow_deps
        https://bugzilla.redhat.com/show_bug.cgi?id=877038
--------------------------------------------------------------------------------


================================================================================
 armadillo-4.550.2-1.fc19 (FEDORA-2014-16773)
 Fast C++ matrix library with interfaces to LAPACK and ATLAS
--------------------------------------------------------------------------------
Update Information:

update to 4.550.2 for gcc 4.4 bug which is only relevant on EL6
Version 4.550   (Singapore Sling Deluxe)

* added matrix exponential function: expmat()
* faster .log_p() and .avg_log_p() functions in the gmm_diag class when compiling with OpenMP enabled
* faster handling of in-place addition/subtraction of expressions with an outer product 

--------------------------------------------------------------------------------
ChangeLog:

* Fri Dec  5 2014 Ryan Curtin <ryan at ratml.org> - 4.550.2-1
- update to 4.550.2 for gcc 4.4 bug which is only relevant on EL6
* Fri Nov 28 2014 José Matos <jamatos at fedoraproject.org> - 4.550.0-1
- update to 4.550.0
--------------------------------------------------------------------------------


================================================================================
 bind-9.9.3-16.P2.fc19 (FEDORA-2014-16576)
 The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server
--------------------------------------------------------------------------------
Update Information:

Fix for CVE-2014-8500
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Tomas Hozza <thozza at redhat.com> 32:9.9.3-16.P2
- Fix CVE-2014-8500 (#1171913)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171912 - CVE-2014-8500 bind: delegation handling denial of service
        https://bugzilla.redhat.com/show_bug.cgi?id=1171912
--------------------------------------------------------------------------------


================================================================================
 cmake-fedora-2.3.4-1.fc19 (FEDORA-2014-16526)
 CMake helper modules for fedora developers
--------------------------------------------------------------------------------
Update Information:

- Fixed RHBZ 1144906 - cmake-fedora failed to build target pot_files if the .pot file not exists.
- ManageDependency: Now able to assign multiple PKG_CONFIG files.
- ManageGConf: Added "Variables to cache".
- cmake-fedora.conf: el7 and fc21 is now available in bodhi.
- ManageRPMScript: Fixed the mo file handling.
- ManageZanata: Use /usr/share/locale as SYSTEM_LOCALE source instead.
- Fixed RHBZ 1144906 - cmake-fedora failed to build target pot_files if the .pot file not exists.
- ManageDependency: var_CFLAGS and var_LIBS are also cached.
- ManageDependency: var_INCLUDEDIR also includes directories from var_CFLAGS.
- ManageGConf: Added "Variables to cache".
- cmake-fedora.conf: el7 and fc21 is now available in bodhi.
- Fixed RHBZ 1144906 - cmake-fedora failed to build target pot_files if the .pot file not exists.
- ManageDependency: var_CFLAGS and var_LIBS are also cached.
- ManageDependency: var_INCLUDEDIR also includes directories from var_CFLAGS.
- ManageGConf: Added "Variables to cache".
- cmake-fedora.conf: el7 and fc21 is now available in bodhi.
- Fixed RHBZ 1144906 - cmake-fedora failed to build target pot_files if the .pot file not exists.
- ManageDependency: var_CFLAGS and var_LIBS are also cached.
- ManageDependency: var_INCLUDEDIR also includes directories from var_CFLAGS.
- ManageGConf: Added "Variables to cache".
- cmake-fedora.conf: el7 and fc21 is now available in bodhi.
- Fixed RHBZ 1144906 - cmake-fedora failed to build target pot_files if the .pot file not exists.
- ManageDependency: var_CFLAGS and var_LIBS are also cached.
- ManageDependency: var_INCLUDEDIR also includes directories from var_CFLAGS.
- ManageGConf: Added "Variables to cache".
- cmake-fedora.conf: el7 and fc21 is now available in bodhi.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Ding-Yi Chen <dchen at redhat.com> - 2.3.4-1
- Fixed RHBZ 1144906 - cmake-fedora failed to build target pot_files if the .pot file not exists.
- ManageDependency: Now able to assign multiple PKG_CONFIG files.
- ManageGConf: Added "Variables to cache".
- cmake-fedora.conf: el7 and fc21 is now available in bodhi.
- ManageRPMScript: Fixed the mo file handling.
- ManageZanata: Use /usr/share/locale as SYSTEM_LOCALE source instead.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1144906 - cmake-fedora failed to build target pot_files if the .pot file not exists
        https://bugzilla.redhat.com/show_bug.cgi?id=1144906
--------------------------------------------------------------------------------


================================================================================
 curl-7.29.0-27.fc19 (FEDORA-2014-16690)
 A utility for getting files from remote servers (FTP, HTTP, and others)
--------------------------------------------------------------------------------
Update Information:

- make CURLOPT_LOW_SPEED_LIMIT work again with threaded resolver (#1172572)
- allow to use TLS 1.1 and TLS 1.2 (#1153814)
- disable libcurl-level downgrade to SSLv3 (#1166567)
- low-speed-limit: avoid timeout flood (#1166239)
- fix handling of CURLOPT_COPYPOSTFIELDS in curl_easy_duphandle (CVE-2014-3707)

--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Kamil Dudka <kdudka at redhat.com> 7.29.0-27
- make CURLOPT_LOW_SPEED_LIMIT work again with threaded resolver (#1172572)
* Mon Nov 24 2014 Kamil Dudka <kdudka at redhat.com> 7.29.0-26
- allow to use TLS 1.1 and TLS 1.2 (#1153814)
- disable libcurl-level downgrade to SSLv3 (#1166567)
- low-speed-limit: avoid timeout flood (#1166239)
* Wed Nov  5 2014 Kamil Dudka <kdudka at redhat.com> 7.29.0-25
- fix handling of CURLOPT_COPYPOSTFIELDS in curl_easy_duphandle (CVE-2014-3707)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1154941 - CVE-2014-3707 curl: incorrect handle duplication after COPYPOSTFIELDS
        https://bugzilla.redhat.com/show_bug.cgi?id=1154941
--------------------------------------------------------------------------------


================================================================================
 fedup-0.9.1-1.fc19 (FEDORA-2014-16535)
 The Fedora Upgrade tool
--------------------------------------------------------------------------------
Update Information:

* Fix _UnboundLocalError_ when the argument to `--product` or `--add-install` is misspelled or otherwise not found
* Make sure `fedup --clean` doesn't require `--product` on F20
--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec  8 2014 Will Woods <wwoods at redhat.com> 0.9.1-1
- Fix traceback if --product/--add-install is misspelled/missing (#1167971)
- Make sure fedup --clean doesn't require --product (#1158766)
- Give clearer error messages about invalid '--network' values
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1167971 - [abrt] fedup: download.py:265:build_update_transaction:UnboundLocalError: local variable 'tx' referenced before assignment
        https://bugzilla.redhat.com/show_bug.cgi?id=1167971
  [ 2 ] Bug #1158766 - fedup --clean requires --product
        https://bugzilla.redhat.com/show_bug.cgi?id=1158766
--------------------------------------------------------------------------------


================================================================================
 hicolor-icon-theme-0.14-1.fc19 (FEDORA-2014-16770)
 Basic requirement for icon themes
--------------------------------------------------------------------------------
Update Information:

Update to 0.14, own 512x512 directory (#1044771)
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 David King <amigadave at amigadave.com> - 0.14-1
- Update to 0.14, own 512x512 directory (#1044771)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1044771 - Should hicolor-icon-theme own /usr/share/icons/hicolor/512x512?
        https://bugzilla.redhat.com/show_bug.cgi?id=1044771
  [ 2 ] Bug #1172589 - hicolor-icon-theme-0.14 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1172589
--------------------------------------------------------------------------------


================================================================================
 ibus-chewing-1.4.11.1-1.fc19 (FEDORA-2014-16707)
 The Chewing engine for IBus input platform
--------------------------------------------------------------------------------
Update Information:

- Resolves Bug 1013977 - Slow focus change with ibus-chewing
- Resolves Bug 1062133 - ibus-chewing may not handle key event after focus change
- Resolves Bug 1073797 - Cannot identify input mode for Chinese IME (ibus-chewing)
- Fixed Bug 902866 - ibus-chewing uses dconf but still installs gconf schemas
  (Also listed as GitHub ibus-chewing #36)
- MakerDialog GUI is only loaded when setting dialog is invoked.
- Setting is removed from ibus-properties because it can be launched
  from either:
  + Executable ibus-setup-chewing: Usually under /usr/libexec
  + Input method preference in IBus preference.
- Fixed github issue #43: First space not able to input
    Thanks FreedomKnight.
- Fixed github issue #44: Update input-events (for libchewing-0.4.0)
    Thanks hiunnhue.
- Fixed github issue #45: Optimize properties handling.
    Thanks Ueno.
- github is now hosting the ibus-chewing tarballs.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Dec 11 2014 Ding-Yi Chen <dchen at redhat.com> - 1.4.11.1-1
- Resolves Bug 1013977 - Slow focus change with ibus-chewing
- Resolves Bug 1062133 - ibus-chewing may not handle key event after focus change
- Resolves Bug 1073797 - Cannot identify input mode for Chinese IME (ibus-chewing)
- Fixed Bug 902866 - ibus-chewing uses dconf but still installs gconf schemas
  (Also listed as GitHub ibus-chewing #36)
- MakerDialog GUI is only loaded when setting dialog is invoked.
- Setting is removed from ibus-properties because it can be launched
  from either:
  + Executable ibus-setup-chewing: Usually under /usr/libexec
  + Input method preference in IBus preference.
- Fixed github issue #43: First space not able to input
    Thanks FreedomKnight.
- Fixed github issue #44: Update input-events (for libchewing-0.4.0)
    Thanks hiunnhue.
- Fixed github issue #45: Optimize properties handling.
    Thanks Ueno.
- github is now hosting the ibus-chewing tarballs.
* Sat Aug 16 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.4.10.1-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.4.10.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #902866 - ibus-chewing uses dconf but still installs gconf schemas
        https://bugzilla.redhat.com/show_bug.cgi?id=902866
--------------------------------------------------------------------------------


================================================================================
 java-1.7.0-openjdk-1.7.0.71-2.5.3.2.fc19 (FEDORA-2014-16577)
 OpenJDK Runtime Environment
--------------------------------------------------------------------------------
Update Information:

packages made relocatable  (RH11690970), added and applied patch404 rh1155012-jdk-speedup.patch, fix for https://bugzilla.redhat.com/show_bug.cgi?id=1155012
--------------------------------------------------------------------------------
ChangeLog:

* Tue Dec  9 2014 Jiri Vanek <jvanek at redhat.com> - 1:1.7.0.71-2.5.3.2
- added and applied patch404 rh1155012-jdk-speedup.patch
* Mon Dec  1 2014 Jiri Vanek <jvanek at redhat.com> - 1:1.7.0.71-2.5.3.1
- removed source14 remove-origin-from-rpaths (11690970)
- removed build requirement for chrpath
--------------------------------------------------------------------------------


================================================================================
 kernel-3.14.26-100.fc19 (FEDORA-2014-16790)
 The Linux kernel
--------------------------------------------------------------------------------
Update Information:

The 3.14.26 update contains a number of important fixes across the tree
The 3.14.25 stable update contains a number of important fixes across the tree.
The 3.14.24 stable update contains a number of important fixes across the tree.
--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec  8 2014 Justin M. Forbes <jforbes at fedoraproject.org> - 3.14.26-100
- Linux v3.14.26
* Thu Dec  4 2014 Josh Boyer <jwboyer at fedoraproject.org>
- CVE-2014-9090 local DoS via do_double_fault due to improper SS faults (rhbz 1170691)
* Fri Nov 21 2014 Justin M. Forbes <jforbes at fedoraproject.org> - 3.14.25-100
- Linux v3.14.25
* Fri Nov 14 2014 Justin M. Forbes <jforbes at fedoraproject.org> - 3.14.24-100
- Linux v3.14.24
* Thu Nov 13 2014 Josh Boyer <jwboyer at fedoraproject.org>
- CVE-2014-7842 kvm: reporting emulation failures to userspace (rhbz 1163762 1163767)
* Wed Nov 12 2014 Josh Boyer <jwboyer at fedoraproject.org>
- CVE-2014-7841 sctp: NULL ptr deref on malformed packet (rhbz 1163087 1163095)
* Fri Nov  7 2014 Josh Boyer <jwboyer at fedoraproject.org>
- CVE-2014-7826 CVE-2014-7825 insufficient syscall number validation in perf and ftrace subsystems (rhbz 1161565 1161572)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1170691 - CVE-2014-9090 kernel: espfix64: local DoS via do_double_fault() due to improper handling of faults associated with SS segment register
        https://bugzilla.redhat.com/show_bug.cgi?id=1170691
  [ 2 ] Bug #1163762 - CVE-2010-5313 CVE-2014-7842 kernel: kvm: reporting emulation failures to userspace
        https://bugzilla.redhat.com/show_bug.cgi?id=1163762
  [ 3 ] Bug #1163087 - CVE-2014-7841 kernel: net: sctp: NULL pointer dereference in af->from_addr_param on malformed packet
        https://bugzilla.redhat.com/show_bug.cgi?id=1163087
  [ 4 ] Bug #1161565 - CVE-2014-7825 CVE-2014-7826 kernel: insufficient syscall number validation in perf and ftrace subsystems
        https://bugzilla.redhat.com/show_bug.cgi?id=1161565
--------------------------------------------------------------------------------


================================================================================
 libmediainfo-0.7.71-2.fc19 (FEDORA-2014-16683)
 Library for supplies technical and tag information about a video or audio file
--------------------------------------------------------------------------------
Update Information:

use cmake
--------------------------------------------------------------------------------
ChangeLog:

* Sun Dec  7 2014 Ivan Romanov <drizt at land.ru> - 0.7.71-2
- use cmake
--------------------------------------------------------------------------------


================================================================================
 libzen-0.4.30-2.fc19 (FEDORA-2014-16635)
 Shared library for libmediainfo and medianfo*
--------------------------------------------------------------------------------
Update Information:

use cmake
--------------------------------------------------------------------------------
ChangeLog:

* Sun Dec  7 2014 Ivan Romanov <drizt at land.ru> - 0.4.30-2
- use cmake
--------------------------------------------------------------------------------


================================================================================
 lis-1.5.33-1.fc19 (FEDORA-2014-16641)
 A library for solving linear equations and eigenvalue problems
--------------------------------------------------------------------------------
Update Information:

Update to 1.5.33
Update to 1.5.31
Update to 1.5.24
Update to 1.5.22
Update to 1.5.13
Update to 1.5.11
Update to 1.5.4
Update to 1.5.2
Update to 1.4.67
Update to 1.4.64
Update to 1.4.63
Update to 1.4.62
--------------------------------------------------------------------------------
ChangeLog:

* Sun Dec  7 2014 Florian Lehner <dev at der-flo.net> - 1.5.33-1
- Update to 1.5.33
* Wed Dec  3 2014 Florian Lehner <dev at der-flo.net> - 1.5.31-1
- Update to 1.5.31
* Thu Nov 27 2014 Florian Lehner <dev at der-flo.net> - 1.5.24-1
- Update to 1.5.24
* Wed Nov 26 2014 Florian Lehner <dev at der-flo.net> - 1.5.23-1
- Update to 1.5.23
* Tue Nov 25 2014 Florian Lehner <dev at der-flo.net> - 1.5.22-1
- Update to 1.5.22
* Fri Nov 21 2014 Florian Lehner <dev at der-flo.net> - 1.5.19-1
- Update to 1.5.19
* Fri Nov 21 2014 Florian Lehner <dev at der-flo.net> - 1.5.18-1
- Update to 1.5.18
* Sat Nov 15 2014 Florian Lehner <dev at der-flo.net> - 1.5.13-1
- Update to 1.5.13
* Wed Nov 12 2014 Florian Lehner <dev at der-flo.net> - 1.5.11-1
- Update to 1.5.11
* Tue Nov  4 2014 Florian Lehner <dev at der-flo.net> - 1.5.4-1
- Update to 1.5.4
* Sat Nov  1 2014 Florian Lehner <dev at der-flo.net> - 1.5.2-1
- Update to 1.5.2
* Tue Oct 28 2014 Florian Lehner <dev at der-flo.net> - 1.4.67-1
- Update to 1.4.67
* Mon Oct 27 2014 Florian Lehner <dev at der-flo.net> - 1.4.66-1
- Update to 1.4.66
* Tue Oct 21 2014 Florian Lehner <dev at der-flo.net> - 1.4.64-1
- Update to 1.4.64
* Mon Oct 20 2014 Florian Lehner <dev at der-flo.net> - 1.4.63-1
- Update to 1.4.63
* Sat Oct 18 2014 Florian Lehner <dev at der-flo.net> - 1.4.62-1
- Update to 1.4.62
--------------------------------------------------------------------------------


================================================================================
 liveusb-creator-3.13.1-2.fc19 (FEDORA-2014-15984)
 A liveusb creator
--------------------------------------------------------------------------------
Update Information:

 * Support a new installation mode that uses `dd` to copy the iso directly to the device. This method tends to be more reliable than the non-destructive approach.
 * Added a new `--dd` command-line option
 * DVD iso support with the 'overwrite device' method
 * Improved UI layout
 * Added AppData metadata
 * The `--calculcate-liveos-checksum` now works on Linux
 * Fixed the code that automatically populates the available releases
 * Switched to use polkit on Linux instead of consolehelper for authentication
 * Translation updates
 * Improved error handling

--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec  8 2014 Rex Dieter <rdieter at fedoraproject.org> 3.13.1-2
- Requires: PolicyKit-authentication-agent (#1171583)
* Thu Nov 27 2014 Luke Macken <lmacken at redhat.com> - 3.13.1-1
- Latest upstream release
* Thu Nov 27 2014 Gene Czarcinski <gczarcinski at gmail.com> 3.13.0-2
- convert to using polkit (pkexec) instead of consolehelper
* Wed Nov 26 2014 Luke Macken <lmacken at redhat.com> - 3.13.0-1
- Latest upstream release with bug fixes and interface improvements.
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 3.12.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri Feb 21 2014 Luke Macken <lmacken at redhat.com> 3.12.1-1
- Update to 3.12.1 with more translations
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1096460 - [abrt] liveusb-creator: grabber.py:1727:_do_grab:URLGrabError: [Errno 14] curl#7 - "Failed to connect to 2a02:6b8::183: Сеть недоступна"
        https://bugzilla.redhat.com/show_bug.cgi?id=1096460
  [ 2 ] Bug #995258 - Cannot install Fedora 19 on MacBook pro
        https://bugzilla.redhat.com/show_bug.cgi?id=995258
  [ 3 ] Bug #1006270 - [abrt] liveusb-creator-3.11.8-3.fc19: creator.py:362:get_liveos:TypeError: unsupported operand type(s) for +: 'NoneType' and 'str'
        https://bugzilla.redhat.com/show_bug.cgi?id=1006270
  [ 4 ] Bug #1033489 - [abrt] liveusb-creator-3.11.8-3.fc19: creator.py:341:delete_liveos:UnicodeDecodeError: 'ascii' codec can't decode byte 0xc3 in position 12: ordinal not in range(128)
        https://bugzilla.redhat.com/show_bug.cgi?id=1033489
  [ 5 ] Bug #1044309 - [abrt] liveusb-creator: gui.py:470:status:TypeError: QTextEdit.append(QString): argument 1 has unexpected type 'int'
        https://bugzilla.redhat.com/show_bug.cgi?id=1044309
  [ 6 ] Bug #1045692 - [abrt] liveusb-creator: gui.py:80:__init__:LiveUSBError: Unknown release: RFRemix 20 i686 XFCE
        https://bugzilla.redhat.com/show_bug.cgi?id=1045692
  [ 7 ] Bug #1057640 - [abrt] liveusb-creator: creator.py:732:get_free_bytes:OSError: [Errno 2] File o directory non esistente: '/run/media/lorenzo/F28B-8137'
        https://bugzilla.redhat.com/show_bug.cgi?id=1057640
  [ 8 ] Bug #1089453 - [abrt] liveusb-creator: linux_dialog.py:10:<module>:ImportError: /usr/lib/python2.7/site-packages/PyQt4/QtCore.so: undefined symbol: _ZTI13QStateMachine
        https://bugzilla.redhat.com/show_bug.cgi?id=1089453
  [ 9 ] Bug #1098725 - [abrt] liveusb-creator: creator.py:341:delete_liveos:UnicodeDecodeError: 'ascii' codec can't decode byte 0xc3 in position 21: ordinal not in range(128)
        https://bugzilla.redhat.com/show_bug.cgi?id=1098725
  [ 10 ] Bug #1101288 - Created F20 liveusb boot problem
        https://bugzilla.redhat.com/show_bug.cgi?id=1101288
  [ 11 ] Bug #1120893 - unable to boot supermicro X10ssl-f and C7Z87
        https://bugzilla.redhat.com/show_bug.cgi?id=1120893
  [ 12 ] Bug #1149782 - liveusb-creator creates non-booting Live USB
        https://bugzilla.redhat.com/show_bug.cgi?id=1149782
  [ 13 ] Bug #1154779 - [abrt] liveusb-creator: python2.7 killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1154779
  [ 14 ] Bug #1156489 - liveusb-creator for Windows (Win 8.1) produces not bootable usb media
        https://bugzilla.redhat.com/show_bug.cgi?id=1156489
  [ 15 ] Bug #1160979 - Trying to boot from USB just says "No OS found", or something like that
        https://bugzilla.redhat.com/show_bug.cgi?id=1160979
  [ 16 ] Bug #1161867 - Create a F20-DVD work but USB fail to boot
        https://bugzilla.redhat.com/show_bug.cgi?id=1161867
  [ 17 ] Bug #1164589 - Fedora Live unable to boot from USB 3.0 device
        https://bugzilla.redhat.com/show_bug.cgi?id=1164589
  [ 18 ] Bug #537577 - Ability to build LiveUSB from within a LiveDVD/CD
        https://bugzilla.redhat.com/show_bug.cgi?id=537577
  [ 19 ] Bug #1044243 - Installing from USB has wrong file paths
        https://bugzilla.redhat.com/show_bug.cgi?id=1044243
  [ 20 ] Bug #1054465 - [abrt] liveusb-creator: creator.py:362:get_liveos:TypeError: unsupported operand type(s) for +: 'NoneType' and 'str'
        https://bugzilla.redhat.com/show_bug.cgi?id=1054465
  [ 21 ] Bug #1145813 - RFE: use polkit instead of consolehelper
        https://bugzilla.redhat.com/show_bug.cgi?id=1145813
  [ 22 ] Bug #1171583 - liveusb-creator: Please remove hardcoded Requires: polkit-gnome
        https://bugzilla.redhat.com/show_bug.cgi?id=1171583
--------------------------------------------------------------------------------


================================================================================
 lxc-1.0.7-1.fc19 (FEDORA-2014-16544)
 Linux Resource Containers
--------------------------------------------------------------------------------
Update Information:

Update to the latest 1.0 release of LXC.

See https://linuxcontainers.org/news/ for the full announcement and changelog.
--------------------------------------------------------------------------------
ChangeLog:

* Sun Dec  7 2014 Thomas Moschny <thomas.moschny at gmx.de> - 1.0.7-1
- Update to 1.0.7.
--------------------------------------------------------------------------------


================================================================================
 mantis-1.2.18-1.fc19 (FEDORA-2014-16504)
 Web-based issue tracking system
--------------------------------------------------------------------------------
Update Information:

Security fix for CVE-2014-9280, CVE-2014-9279, CVE-2014-6316, CVE-2014-9117, CVE-2014-9089
--------------------------------------------------------------------------------
ChangeLog:

* Tue Dec  9 2014 Gianluca Sforna <giallu at gmail.com> - 1.2.18-1
- new upstream release
- drop upstreamed patches
- fix several security issues, full list in upstream changelog:
  http://www.mantisbt.org/bugs/changelog_page.php?version_id=191
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171709 - CVE-2014-9280 mantis: PHP Object Injection in filter API
        https://bugzilla.redhat.com/show_bug.cgi?id=1171709
  [ 2 ] Bug #1171713 - CVE-2014-9279 mantis: database credentials disclosure in MantisBT's unattended upgrade script
        https://bugzilla.redhat.com/show_bug.cgi?id=1171713
  [ 3 ] Bug #1170542 - CVE-2014-6316 mantis: URL redirection issue
        https://bugzilla.redhat.com/show_bug.cgi?id=1170542
  [ 4 ] Bug #1170193 - CVE-2014-9272 mantis: XSS in string_insert_hrefs()
        https://bugzilla.redhat.com/show_bug.cgi?id=1170193
  [ 5 ] Bug #1170192 - CVE-2014-9281 mantis: XSS in admin panel / copy_field.php
        https://bugzilla.redhat.com/show_bug.cgi?id=1170192
  [ 6 ] Bug #1170188 - CVE-2014-9270 mantis: XSS in projax_api.php
        https://bugzilla.redhat.com/show_bug.cgi?id=1170188
  [ 7 ] Bug #1170180 - CVE-2014-9269 mantis: XSS in extended project browser
        https://bugzilla.redhat.com/show_bug.cgi?id=1170180
  [ 8 ] Bug #1168618 - CVE-2014-9117 mantis: CAPTCHA bypass in registration form
        https://bugzilla.redhat.com/show_bug.cgi?id=1168618
  [ 9 ] Bug #1168161 - CVE-2014-9089 mantis: SQL injection in view_all_set.php
        https://bugzilla.redhat.com/show_bug.cgi?id=1168161
  [ 10 ] Bug #1165152 - CVE-2014-8987 mantis: XSS on Configuration Report page
        https://bugzilla.redhat.com/show_bug.cgi?id=1165152
  [ 11 ] Bug #1164631 - CVE-2014-8988 mantis: information disclosure issue to be fixed in the upcoming 1.2.18 release
        https://bugzilla.redhat.com/show_bug.cgi?id=1164631
  [ 12 ] Bug #1164620 - CVE-2014-8986 mantis: cross-site scripting (XSS) issues to be fixed in the upcoming 1.2.18 release
        https://bugzilla.redhat.com/show_bug.cgi?id=1164620
  [ 13 ] Bug #1169162 - mantis: PHP object injection in filter API
        https://bugzilla.redhat.com/show_bug.cgi?id=1169162
  [ 14 ] Bug #1169194 - mantis: database credentials leak
        https://bugzilla.redhat.com/show_bug.cgi?id=1169194
--------------------------------------------------------------------------------


================================================================================
 mozilla-adblockplus-2.6.6-1.fc19 (FEDORA-2014-16574)
 Adblocking extension for Mozilla Firefox, Thunderbird, and SeaMonkey
--------------------------------------------------------------------------------
Update Information:

- spec file is again universal. Mr. Hughes apparently didn't notice that it was to begin with.
-2.6.5:
--Fixed: Element hiding exceptions are broken by changes in Firefox 34 and Firefox 35 (issue 1241, issue 1381).
--Fixed: Blocking via context menu won’t always suggest blocking the most recent request (issue 362).
--Fixed: Issue reporter will complain about too many filter lists even when these filter lists are “special”
---like the anti-adblock list (issue 690).
--Fixed: Disabling filters via space bar no longer works in preferences (issue 1129).
--Fixed: Sharing Adblock Plus from the first-run page won’t work if the Anti-Social list is enabled (issue 1133).
--Fixed: Anti-Adblock warning will sometimes appear on websites without any anti-adblock behavior (issue 1161).
--Made $sitekey option behavior more consistent, it can be used similarly to $domain now rather than whitelisting
---complete websites only (issue 432).
-
-2.6.6:
--Now works on Firefox nightly builds

--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Russell Golden <niveusluna at niveusluna.org> - 2.6.6-1
- spec file is again universal. Mr. Hughes apparently didn't notice that it was to begin with.
-2.6.5:
--Fixed: Element hiding exceptions are broken by changes in Firefox 34 and Firefox 35 (issue 1241, issue 1381).
--Fixed: Blocking via context menu won’t always suggest blocking the most recent request (issue 362).
--Fixed: Issue reporter will complain about too many filter lists even when these filter lists are “special”
---like the anti-adblock list (issue 690).
--Fixed: Disabling filters via space bar no longer works in preferences (issue 1129).
--Fixed: Sharing Adblock Plus from the first-run page won’t work if the Anti-Social list is enabled (issue 1133).
--Fixed: Anti-Adblock warning will sometimes appear on websites without any anti-adblock behavior (issue 1161).
--Made $sitekey option behavior more consistent, it can be used similarly to $domain now rather than whitelisting
---complete websites only (issue 432).
-
-2.6.6:
--Now works on Firefox nightly builds
* Tue Aug 19 2014 Richard Hughes <richard at hughsie.com> - 2.6.4-3
- Add a MetaInfo file for GNOME Software and Apper.
--------------------------------------------------------------------------------


================================================================================
 nodejs-astral-pass-0.1.0-2.fc19 (FEDORA-2014-16638)
 Pass system for Astral
--------------------------------------------------------------------------------
Update Information:

Removed group
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1170815 - Review Request: nodejs-astral-pass -  Pass helper for Astral that simplifies traversal.
        https://bugzilla.redhat.com/show_bug.cgi?id=1170815
--------------------------------------------------------------------------------


================================================================================
 nodejs-bluebird-2.3.11-1.fc19 (FEDORA-2014-16706)
 Full featured Promises/A+ implementation
--------------------------------------------------------------------------------
Update Information:

Latest upstream.
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Ralph Bean <rbean at redhat.com> - 2.3.11-1
- Latest upstream.
* Mon Aug 18 2014 Ralph Bean <rbean at redhat.com> - 2.3.0-1
- Latest upstream.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1172466 - Update to latest 2.3.11 release
        https://bugzilla.redhat.com/show_bug.cgi?id=1172466
--------------------------------------------------------------------------------


================================================================================
 nodejs-clone-0.1.18-2.fc19 (FEDORA-2014-16620)
 Deep cloning of objects and arrays
--------------------------------------------------------------------------------
Update Information:

Added LICENSE to %files
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1170811 - Review Request: nodejs-clone - deep cloning of objects and arrays
        https://bugzilla.redhat.com/show_bug.cgi?id=1170811
--------------------------------------------------------------------------------


================================================================================
 nodejs-date-now-1.0.1-1.fc19 (FEDORA-2014-16780)
 A requirable version of Date.now()
--------------------------------------------------------------------------------
Update Information:

Initial package
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1169113 - Review Request: nodejs-date-now -  A requirable version of Date.now()
        https://bugzilla.redhat.com/show_bug.cgi?id=1169113
--------------------------------------------------------------------------------


================================================================================
 nodejs-deep-extend-0.3.2-1.fc19 (FEDORA-2014-16562)
 Recursive object extending
--------------------------------------------------------------------------------
Update Information:

Initial packaging
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171228 - Review Request: nodejs-deep-extend - Recursive object extending
        https://bugzilla.redhat.com/show_bug.cgi?id=1171228
--------------------------------------------------------------------------------


================================================================================
 nodejs-domelementtype-1.1.3-2.fc19 (FEDORA-2014-16752)
 All the types of nodes in htmlparser2's dom
--------------------------------------------------------------------------------
Update Information:

Fixed license
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1169118 - Review Request: nodejs-domelementtype - All the types of nodes in htmlparser2's dom
        https://bugzilla.redhat.com/show_bug.cgi?id=1169118
--------------------------------------------------------------------------------


================================================================================
 nodejs-domhandler-2.3.0-2.fc19 (FEDORA-2014-16493)
 Handler for htmlparser2 that turns pages into a dom
--------------------------------------------------------------------------------
Update Information:

Set correct license
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1169121 - Review Request: nodejs-domhandler - Handler for htmlparser2 that turns pages into a dom
        https://bugzilla.redhat.com/show_bug.cgi?id=1169121
--------------------------------------------------------------------------------


================================================================================
 nodejs-domutils-1.5.0-2.fc19 (FEDORA-2014-16543)
 Utilities for working with htmlparser2's dom
--------------------------------------------------------------------------------
Update Information:

Corrected license
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1169124 - Review Request: nodejs-domutils - Utilities for working with htmlparser2's dom
        https://bugzilla.redhat.com/show_bug.cgi?id=1169124
--------------------------------------------------------------------------------


================================================================================
 nodejs-entities-1.1.1-2.fc19 (FEDORA-2014-16643)
 Encode & decode XML/HTML entities with ease
--------------------------------------------------------------------------------
Update Information:

Added rm -rf node_modules/
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1169123 - Review Request: nodejs-entities - Encode & decode XML/HTML entities with ease
        https://bugzilla.redhat.com/show_bug.cgi?id=1169123
--------------------------------------------------------------------------------


================================================================================
 nodejs-langdetect-0.2.0-1.fc19 (FEDORA-2014-16629)
 Language detection library for Node.js
--------------------------------------------------------------------------------
Update Information:

Initial packaging
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171227 - Review Request: nodejs-langdetect - Language detection library for Node.js
        https://bugzilla.redhat.com/show_bug.cgi?id=1171227
--------------------------------------------------------------------------------


================================================================================
 nodejs-posix-getopt-1.1.0-1.fc19 (FEDORA-2014-16637)
 POSIX-style getopt() for Node.js
--------------------------------------------------------------------------------
Update Information:

Initial packaging
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171239 - Review Request: nodejs-posix-getopt - POSIX-style getopt() for Node.js
        https://bugzilla.redhat.com/show_bug.cgi?id=1171239
--------------------------------------------------------------------------------


================================================================================
 nodejs-read-all-stream-0.1.2-2.fc19 (FEDORA-2014-16757)
 Read all stream content and pass it to callback
--------------------------------------------------------------------------------
Update Information:

Add test.js from upstream and enable tests
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171235 - Review Request: nodejs-read-all-stream - Read all stream content and pass it to callback
        https://bugzilla.redhat.com/show_bug.cgi?id=1171235
--------------------------------------------------------------------------------


================================================================================
 nodejs-timed-out-2.0.0-2.fc19 (FEDORA-2014-16539)
 Timeout HTTP/HTTPS requests
--------------------------------------------------------------------------------
Update Information:

Add test.js from upstream and enable tests
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171233 - Review Request: nodejs-timed-out - Timeout HTTP/HTTPS requests
        https://bugzilla.redhat.com/show_bug.cgi?id=1171233
--------------------------------------------------------------------------------


================================================================================
 nodejs-unicode-7.0.0-0.1.5-2.fc19 (FEDORA-2014-16636)
 JavaScript-compatible Unicode 7.0.0 data
--------------------------------------------------------------------------------
Update Information:

Initial package
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1171226 - Review Request: nodejs-unicode-7.0.0 - JavaScript-compatible Unicode 7.0.0 data
        https://bugzilla.redhat.com/show_bug.cgi?id=1171226
--------------------------------------------------------------------------------


================================================================================
 nodejs-util-0.10.3-1.fc19 (FEDORA-2014-16598)
 Node.JS util module
--------------------------------------------------------------------------------
Update Information:

Initial package
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1169140 - Review Request: nodejs-util - Node.JS util module
        https://bugzilla.redhat.com/show_bug.cgi?id=1169140
--------------------------------------------------------------------------------


================================================================================
 osm2pgsql-0.87.0-1.fc19 (FEDORA-2014-16567)
 Imports map data from OpenStreetMap to a PostgreSQL database
--------------------------------------------------------------------------------
Update Information:

Update to latest upstream version 0.87.0 (rhbz#1172614)
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Fabian Affolter <mail at fabian-affolter.ch> - 0.87.0-1
- Update to latest upstream version 0.87.0 (rhbz#1172614)
* Wed Oct 29 2014 Fabian Affolter <mail at fabian-affolter.ch> - 0.86.0-1
- Update to latest upstream version 0.86.0 (rhbz#1157481)
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.84.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Wed Aug  6 2014 Fabian Affolter <mail at fabian-affolter.ch> - 0.84.0-3
- Rebuild for protobuf (rhbz#1126749)
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 0.84.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Sun Jan  5 2014 Fabian Affolter <mail at fabian-affolter.ch> - 0.84.0-1
- Update to latest upstream version 0.84.0
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1172614 - osm2pgsql-0.87.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1172614
--------------------------------------------------------------------------------


================================================================================
 owncloud-6.0.6-1.fc19 (FEDORA-2014-16582)
 Private file sync and share server
--------------------------------------------------------------------------------
Update Information:

This updates ownCloud to 6.0.6, the latest 6.x series release, in Fedora 19. It follows from the ownCloud 5.x update that was pushed recently. Before Fedora 19 goes EOL, ownCloud 7.x will be pushed as a further update.

I have tested upgrading from 4.5 to 6.x (as well as 5.x to 6.x) successfully, but please back up all data (including database contents!) and configuration before upgrading, and report any issues encountered in the upgrade process or afterwards.

Note this update requires packages from update FEDORA-2014-14965, which is being pushed to stable as this one is being pushed to updates-testing.
--------------------------------------------------------------------------------
ChangeLog:

--------------------------------------------------------------------------------


================================================================================
 pcp-3.10.1-1.fc19 (FEDORA-2014-16649)
 System-level performance monitoring and performance management
--------------------------------------------------------------------------------
Update Information:

New upstream release
--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec  1 2014 Nathan Scott <nathans at redhat.com> - 3.10.1-1
- New conditionally-built pcp-pmda-perfevent sub-package.
- Update to latest PCP sources.
* Tue Nov 18 2014 Dave Brolley <brolley at redhat.com> - 3.10.0-2
- papi 5.4.0 rebuild
--------------------------------------------------------------------------------


================================================================================
 perl-smartmatch-0.05-1.fc19 (FEDORA-2014-16788)
 Pluggable smart matching back-ends
--------------------------------------------------------------------------------
Update Information:

This release allows to do recursive smartmatch calls as if they were called from a given caller level.
--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec  8 2014 Petr Pisar <ppisar at redhat.com> - 0.05-1
- 0.05-TRIAL bump
--------------------------------------------------------------------------------


================================================================================
 php-doctrine-lexer-1.0-5.20140909git83893c5.fc19 (FEDORA-2014-16663)
 Base library for a lexer that can be used in top-down, recursive descent parsers
--------------------------------------------------------------------------------
Update Information:

Updated to latest snapshot (83893c552fd2045dd78aef794c31e694c37c0b8c)

Diff: https://github.com/doctrine/lexer/compare/f12a5f74e5f4a9e3f558f3288504e121edfad891...83893c552fd2045dd78aef794c31e694c37c0b8c
--------------------------------------------------------------------------------
ChangeLog:

* Sun Dec  7 2014 Shawn Iwinski <shawn.iwinski at gmail.com> - 1.0-5.20140909git83893c5
- Updated to latest snapshot (required for php-egulias-email-validator 1.2.6)
--------------------------------------------------------------------------------


================================================================================
 php-irodsphp-3.3.0-0.3.beta1.fc19 (FEDORA-2014-16582)
 PHP client API for iRODS
--------------------------------------------------------------------------------
Update Information:

This updates ownCloud to 6.0.6, the latest 6.x series release, in Fedora 19. It follows from the ownCloud 5.x update that was pushed recently. Before Fedora 19 goes EOL, ownCloud 7.x will be pushed as a further update.

I have tested upgrading from 4.5 to 6.x (as well as 5.x to 6.x) successfully, but please back up all data (including database contents!) and configuration before upgrading, and report any issues encountered in the upgrade process or afterwards.

Note this update requires packages from update FEDORA-2014-14965, which is being pushed to stable as this one is being pushed to updates-testing.
--------------------------------------------------------------------------------


================================================================================
 php-tcpdf-6.1.1-1.fc19 (FEDORA-2014-16520)
 PHP class for generating PDF documents and barcodes
--------------------------------------------------------------------------------
Update Information:

6.1.1 (2014-12-07)
* The method TCPDF_STATIC::getRandomSeed() was improved.

6.1.0 (2014-12-07)
* The method TCPDF_STATIC::getRandomSeed() was improved.
* The disk caching feature was removed.
* Bug #1003 "Backslashes become duplicated in table, using WriteHTML" was fixed.
* Bug #1002 "SVG radialGradient within non-square Rect" was fixed.

--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Remi Collet <remi at fedoraproject.org> - 6.1.1-1
- update to 6.1.1
--------------------------------------------------------------------------------


================================================================================
 python-fedmsg-meta-fedora-infrastructure-0.3.7-1.fc19 (FEDORA-2014-16733)
 Metadata providers for Fedora Infrastructure's fedmsg deployment
--------------------------------------------------------------------------------
Update Information:

Latest upstream.  New mirrormanager2 processor.  Bugfixes to the fedimg processor.  Able now to distinguish between some prod and stg messages.
New pkgdb conglomerator, new 'hotness' processor.  Some bugfixes to fas and mailman messages.
--------------------------------------------------------------------------------
ChangeLog:

* Sat Dec  6 2014 Ralph Bean <rbean at redhat.com> - 0.3.7-1
- New mirrormanager2 processor.
- Bugfix to the fedimg processor.
- Be able to distinguish between some prod and stg messages.
* Fri Nov 21 2014 Ralph Bean <rbean at redhat.com> - 0.3.6-1
- Latest upstream with some bugfixes.
- Disable network test with patch.
--------------------------------------------------------------------------------


================================================================================
 rpmlint-1.6-2.fc19 (FEDORA-2014-16664)
 Tool for checking common errors in RPM packages
--------------------------------------------------------------------------------
Update Information:

Update Fedora acceptable license list.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Dec  9 2014 Tom Callaway <spot at fedoraproject.org> - 1.6-2
- update license list in config file
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1170505 - invalid license Unlicense
        https://bugzilla.redhat.com/show_bug.cgi?id=1170505
--------------------------------------------------------------------------------


================================================================================
 srcpd-2.1.2-6.fc19 (FEDORA-2014-16781)
 Simple Railroad Command Protocol (SRCP) server
--------------------------------------------------------------------------------
Update Information:

srcpd: conditional build for ddls88 plugin
--------------------------------------------------------------------------------
ChangeLog:

* Sat Dec  6 2014 Denis Fateyev <denis at fateyev.com> - 2.1.2-6
- Conditional build for ddls88 plugin
* Mon Aug 18 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 2.1.2-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1124952 - srcpd  must be ported or blacklisted for AArch64.
        https://bugzilla.redhat.com/show_bug.cgi?id=1124952
--------------------------------------------------------------------------------


================================================================================
 sugar-portfolio-46-1.fc19 (FEDORA-2014-16517)
 A simple tool for generating slide show from starred Journal entries
--------------------------------------------------------------------------------
Update Information:

Version 46 release
--------------------------------------------------------------------------------
ChangeLog:

* Sun Dec  7 2014 Kalpa Welivitigoda <callkalpa at gmail.com> 46-1
- release 46
* Sun Nov 23 2014 Peter Robinson <pbrobinson at fedoraproject.org> 45-1
- release 45
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 44-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu Aug 29 2013 Kalpa Welivitigoda <callkalpa at gmail.com> 44-1
- release 44
* Sun Aug  4 2013 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 42-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
--------------------------------------------------------------------------------


================================================================================
 x2goserver-4.0.1.18-4.fc19 (FEDORA-2014-13796)
 X2Go Server
--------------------------------------------------------------------------------
Update Information:

- Do not ship other feature files in main package
- Apply upstream fix for issue with Xsession aborting

Update to 4.0.1.16:

  o Complete rewrite of the NX session state control / monitoring
  o Enhance support for other desktop session types (OpenBox, IceWM)
  o Attempt at supporting GNOMEv3 Flashback session in X2Go
  o Support for Cinnamon 1.4 X2Go Sessions
  o Support configuration of clipboard behaviour (server-side _and_ client-side)
  o Fix issues with non-resumable sessions after connection disrupture.
  o Support desktop sharing if sharable sessions is on a kernel namespace socket only.
  o Move all NX session files to /tmp. Don't store session information in $HOME anymore. Only place symlinks in $HOME pointing to /tmp.  Fixes performance and stability of X2Go with homes on network file systems.
  o Fix privilege upgrades for applications launched via pkexec.

--------------------------------------------------------------------------------
ChangeLog:

* Tue Dec  9 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.18-4
- Apply upstream fix for issue with Xsession aborting
* Fri Oct 24 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.18-3
- Do not require x2goserver-xession, do not ship feature file in main package
* Fri Oct 24 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.18-2
- Require x2goserver-xession
* Mon Oct  6 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.18-1
- Update to 4.0.1.18
* Fri Oct  3 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.17-1
- Update to 4.0.1.17
* Thu Oct  2 2014 Rex Dieter <rdieter at fedoraproject.org> 4.0.1.16-2
- -fmbindings: update mime scriptlets
* Thu Sep 25 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.16-1
- Update to 4.0.1.16
* Tue Sep  9 2014 Jitka Plesnikova <jplesnik at redhat.com> - 4.0.1.15-7
- Perl 5.20 mass
* Wed Aug 27 2014 Jitka Plesnikova <jplesnik at redhat.com> - 4.0.1.15-6
- Perl 5.20 rebuild
* Tue Aug 26 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.15-5
- Fix scriptlet requires
* Mon Aug 18 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 4.0.1.15-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 4.0.1.15-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri May  2 2014 Orion Poplawski <orion at cora.nwra.com> - 4.0.1.15-2
- Add Requires xorg-x11-xauth
--------------------------------------------------------------------------------


================================================================================
 xen-4.2.5-7.fc19 (FEDORA-2014-16499)
 Xen is a virtual machine monitor
--------------------------------------------------------------------------------
Update Information:

p2m lock starvation, fix build with --without xsm
--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec  8 2014 Michael Young <m.a.young at durham.ac.uk> - 4.2.5-7
- p2m lock starvation [XSA-114, CVE-2014-9065]
- fix build with --without xsm
--------------------------------------------------------------------------------


================================================================================
 xorg-x11-server-1.14.4-4.fc19 (FEDORA-2014-16728)
 X.Org X11 X server
--------------------------------------------------------------------------------
Update Information:

CVE fixes for everyone - all the X.org CVE fixes from Dec 9th 2014
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 10 2014 Dave Airlie <airlied at redhat.com> 1.14.4-4
- CVE fixes for everyone
--------------------------------------------------------------------------------



More information about the test mailing list