The following Fedora EPEL 5 Security updates need testing: Age URL 1090 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5630/bugzilla-3.2.1... 545 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11893/libguestfs-1.... 309 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1626/puppet-2.7.26-... 159 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3849/sblim-sfcb-1.3... 27 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1344/drupal6-6.35-1... 11 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1588/arj-3.10.22-22... 10 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1636/mantis-1.2.19-... 8 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-5740/perl-Test-Sign... 8 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-5724/torque-4.2.10-... 8 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-5677/chrony-1.31.1-... 5 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-5758/tor-0.2.4.27-1... 5 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-5694/zarafa-7.1.12-... 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-5821/cherokee-1.2.1...
The following builds have been pushed to Fedora EPEL 5 updates-testing
cherokee-1.2.103-6.el5 dpm-dsi-1.9.5-2.el5 drupal7-features-2.5-1.el5 gfal2-2.9.1-1.el5 gfal2-plugin-xrootd-0.4.0-1.el5 gfal2-python-1.8.1-1.el5 gfal2-util-1.2.1-1.el5 globus-net-manager-0.8-1.el5 pcp-3.10.4-1.el5 srm-ifce-1.23.1-1.el5
Details about builds:
================================================================================ cherokee-1.2.103-6.el5 (FEDORA-EPEL-2015-5821) Flexible and Fast Webserver -------------------------------------------------------------------------------- Update Information:
Resolves bz 1114461 - CVE-2014-4668 cherokee: authentication bypass when LDAP server allows unauthenticated binds -------------------------------------------------------------------------------- ChangeLog:
* Wed Apr 15 2015 Pavel Lisý pali@fedoraproject.org - 1.2.103-6 - Resolves bz 1114461 - CVE-2014-4668 cherokee: authentication bypass when LDAP server allows unauthenticated binds - Resolves bz 1094901 - cherokee: script and/or trigger should not directly enable systemd units - Resolves bz 959170 - cherokee-worker and cherokee-admin want to use execstack (EL5) * Sat Aug 16 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.2.103-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.2.103-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1114461 - CVE-2014-4668 cherokee: authentication bypass when LDAP server allows unauthenticated binds [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1114461 [ 2 ] Bug #1094901 - cherokee: script and/or trigger should not directly enable systemd units https://bugzilla.redhat.com/show_bug.cgi?id=1094901 --------------------------------------------------------------------------------
================================================================================ dpm-dsi-1.9.5-2.el5 (FEDORA-EPEL-2015-5853) Disk Pool Manager (DPM) plugin for the Globus GridFTP server -------------------------------------------------------------------------------- Update Information:
New upstream release 1.9.5 Update for new upstream release Update for new upstream release Update for new upstream release -------------------------------------------------------------------------------- ChangeLog:
* Fri Apr 17 2015 Alejandro Alvarez Ayllon aalvarez@cern.ch - 1.9.5-2 - Missing fix by upstream * Thu Apr 16 2015 Alejandro Alvarez Ayllon aalvarez@cern.ch - 1.9.5-1 - Update for new upstream release * Wed Apr 8 2015 Alejandro Alvarez Ayllon aalvarez@cern.ch - 1.9.4-1 - Update for new upstream release * Sat Aug 16 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.9.3-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 1.9.3-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild --------------------------------------------------------------------------------
================================================================================ drupal7-features-2.5-1.el5 (FEDORA-EPEL-2015-5860) Provides feature management for Drupal -------------------------------------------------------------------------------- Update Information:
Update to upstream 2.5 release for bug fixes -------------------------------------------------------------------------------- ChangeLog:
* Tue Apr 14 2015 Jared Smith jsmith@fedoraproject.org - 2.5-1 - Update to upstream 2.5 release for bug fixes - Upstream changelog for this release: https://www.drupal.org/node/2470129 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1211416 - drupal7-features-2.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=1211416 --------------------------------------------------------------------------------
================================================================================ gfal2-2.9.1-1.el5 (FEDORA-EPEL-2015-5826) Grid file access library 2.0 -------------------------------------------------------------------------------- Update Information:
Release of gfal2 2.9.1 -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 16 2015 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 2.9.1-1 - Upgraded to upstream release 2.9.1 --------------------------------------------------------------------------------
================================================================================ gfal2-plugin-xrootd-0.4.0-1.el5 (FEDORA-EPEL-2015-5864) Provide xrootd support for GFAL2 -------------------------------------------------------------------------------- Update Information:
New upstream release 0.4.0 -------------------------------------------------------------------------------- ChangeLog:
* Fri Apr 17 2015 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 0.4.0-1 - Update for new upstream release 0.4.0 * Tue Jan 27 2015 Petr Machata pmachata@redhat.com - 0.3.4-2 - Rebuild for boost 1.57.0 --------------------------------------------------------------------------------
================================================================================ gfal2-python-1.8.1-1.el5 (FEDORA-EPEL-2015-5840) Python bindings for gfal 2 -------------------------------------------------------------------------------- Update Information:
Release of gfal2-python 1.8.1 -------------------------------------------------------------------------------- ChangeLog:
* Fri Apr 17 2015 Alejandro Alvarez <aalvarez at cern.ch> - 1.8.1-1 - Update for release 1.8.1 --------------------------------------------------------------------------------
================================================================================ gfal2-util-1.2.1-1.el5 (FEDORA-EPEL-2015-5872) GFAL2 utility tools -------------------------------------------------------------------------------- Update Information:
Update for upstream release 1.2.1 -------------------------------------------------------------------------------- ChangeLog:
* Fri Apr 17 2015 Alejandro Alvarez <aalvarez at cern.ch> - 1.2.1-1 - Update for new upstream 1.2.1 release --------------------------------------------------------------------------------
================================================================================ globus-net-manager-0.8-1.el5 (FEDORA-EPEL-2015-5847) Globus Toolkit - Network Manager -------------------------------------------------------------------------------- Update Information:
Globus Toolkit update: * globus-net-manager (0.8)
-------------------------------------------------------------------------------- ChangeLog:
* Wed Apr 15 2015 Mattias Ellert mattias.ellert@fysast.uu.se - 0.8-1 - GT6 update (fix for attr not being used on connect) --------------------------------------------------------------------------------
================================================================================ pcp-3.10.4-1.el5 (FEDORA-EPEL-2015-5870) System-level performance monitoring and performance management -------------------------------------------------------------------------------- Update Information:
Update to latest PCP, pcp-webjs and Vector sources. -------------------------------------------------------------------------------- ChangeLog:
* Wed Apr 15 2015 Nathan Scott nathans@redhat.com - 3.10.4-1 - Update to latest PCP, pcp-webjs and Vector sources. - Packaging improvements after re-review (BZ 1204467) - Start pmlogger/pmie independent of persistent state (BZ 1185755) - Fix cron error reports for disabled pmlogger service (BZ 1208699) - Incorporate Vector from Netflix (https://github.com/Netflix/vector) - Sub-packages for pcp-webjs allowing choice and reducing used space. * Wed Mar 4 2015 Dave Brolley brolley@redhat.com - 3.10.3-2 - papi 5.4.1 rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1204467 - Please re-review for packaging mistakes https://bugzilla.redhat.com/show_bug.cgi?id=1204467 [ 2 ] Bug #1185755 - "systemctl start pmlogger" does nothing unless pmlogger.service is also enabled https://bugzilla.redhat.com/show_bug.cgi?id=1185755 --------------------------------------------------------------------------------
================================================================================ srm-ifce-1.23.1-1.el5 (FEDORA-EPEL-2015-5844) SRM client side library -------------------------------------------------------------------------------- Update Information:
Release of srm-ifce 1.23.1 -------------------------------------------------------------------------------- ChangeLog:
* Thu Apr 16 2015 Alejandro Alvarez Ayllon <aalvarez at cern.ch> - 1.23.1-1 - Release srm-ifce 1.23.1 --------------------------------------------------------------------------------