The following Fedora EPEL 8 Security updates need testing:
Age URL
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-d40458db4b trafficserver-9.2.5-1.el8
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-2b876f90b2 xrdp-0.10.1-1.el8
0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-5efb0dbd99 ImageMagick-6.9.13.14-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
aws-c-cal-0.7.2-1.el8
chromium-127.0.6533.88-2.el8
cscppc-2.2.6-1.el8
csdiff-3.4.1-1.el8
csmock-3.6.1-1.el8
gfal2-2.23.0-1.el8
libmongocrypt-1.11.0-1.el8
scorep-6.0-21.el8
srm-ifce-1.24.7-1.el8
syncthing-1.27.9-1.el8
youtube-dl-2024.08.01.git71223bf-1.el8
Details about builds:
================================================================================
aws-c-cal-0.7.2-1.el8 (FEDORA-EPEL-2024-5168e3434b)
AWS Crypto Abstraction Layer
--------------------------------------------------------------------------------
Update Information:
Automatic update for aws-c-cal-0.7.2-1.el8.
Changelog for aws-c-cal
* Thu Jul 18 2024 Packit <hello(a)packit.dev> - 0.7.2-1
- Update to version 0.7.2
- Resolves: rhbz#2298632
* Wed Jul 17 2024 Fedora Release Engineering <releng(a)fedoraproject.org> -
0.7.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jul 18 2024 Packit <hello(a)packit.dev> - 0.7.2-1
- Update to version 0.7.2
- Resolves: rhbz#2298632
* Wed Jul 17 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.7.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2298632 - aws-c-cal-0.7.2 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2298632
--------------------------------------------------------------------------------
================================================================================
chromium-127.0.6533.88-2.el8 (FEDORA-EPEL-2024-b57653699c)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
update to 127.0.6533.88
Critical CVE-2024-6990: Uninitialized Use in Dawn
High CVE-2024-7255: Out of bounds read in WebTransport
High CVE-2024-7256: Insufficient data validation in Dawn
update to 127.0.6533.72
* CVE-2024-6988: Use after free in Downloads
* CVE-2024-6989: Use after free in Loader
* CVE-2024-6991: Use after free in Dawn
* CVE-2024-6992: Out of bounds memory access in ANGLE
* CVE-2024-6993: Inappropriate implementation in Canvas
* CVE-2024-6994: Heap buffer overflow in Layout
* CVE-2024-6995: Inappropriate implementation in Fullscreen
* CVE-2024-6996: Race in Frames
* CVE-2024-6997: Use after free in Tabs
* CVE-2024-6998: Use after free in User Education
* CVE-2024-6999: Inappropriate implementation in FedCM
* CVE-2024-7000: Use after free in CSS. Reported by Anonymous
* CVE-2024-7001: Inappropriate implementation in HTML
* CVE-2024-7003: Inappropriate implementation in FedCM
* CVE-2024-7004: Insufficient validation of untrusted input in Safe
Browsing
* CVE-2024-7005: Insufficient validation of untrusted input in Safe
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 1 2024 Than Ngo <than(a)redhat.com> - 127.0.6533.88-2
- remove old patch that seems to be the cause of a crash
when the user set user.max_user_namespaces to 0
* Wed Jul 31 2024 Than Ngo <than(a)redhat.com> - 127.0.6533.88-1
- update to 127.0.6533.88
* Wed Jul 24 2024 Than Ngo <than(a)redhat.com> - 127.0.6533.72-1
- update to 127.0.6533.72
* CVE-2024-6988: Use after free in Downloads
* CVE-2024-6989: Use after free in Loader
* CVE-2024-6991: Use after free in Dawn
* CVE-2024-6992: Out of bounds memory access in ANGLE
* CVE-2024-6993: Inappropriate implementation in Canvas
* CVE-2024-6994: Heap buffer overflow in Layout
* CVE-2024-6995: Inappropriate implementation in Fullscreen
* CVE-2024-6996: Race in Frames
* CVE-2024-6997: Use after free in Tabs
* CVE-2024-6998: Use after free in User Education
* CVE-2024-6999: Inappropriate implementation in FedCM
* CVE-2024-7000: Use after free in CSS. Reported by Anonymous
* CVE-2024-7001: Inappropriate implementation in HTML
* CVE-2024-7003: Inappropriate implementation in FedCM
* CVE-2024-7004: Insufficient validation of untrusted input in Safe Browsing
* CVE-2024-7005: Insufficient validation of untrusted input in Safe
* Sat Jul 20 2024 Than Ngo <than(a)redhat.com> - 126.0.6478.182-2
- fix condition for is_cfi/use_thin_lto on aarch64/ppc64le
- update powerpc patches
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2299576 - 127.0.6533.72 released, fixing many CVEs
https://bugzilla.redhat.com/show_bug.cgi?id=2299576
[ 2 ] Bug #2299689 - Adopt the ppc64le patches from OpenPOWER patchset
https://bugzilla.redhat.com/show_bug.cgi?id=2299689
--------------------------------------------------------------------------------
================================================================================
cscppc-2.2.6-1.el8 (FEDORA-EPEL-2024-551e413775)
A compiler wrapper that runs Cppcheck in background
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Kamil Dudka <kdudka(a)redhat.com> 2.2.6-1
- update to latest upstream release
--------------------------------------------------------------------------------
================================================================================
csdiff-3.4.1-1.el8 (FEDORA-EPEL-2024-551e413775)
Non-interactive tools for processing code scan results in plain-text
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Kamil Dudka <kdudka(a)redhat.com> - 3.4.1-1
- update to latest upstream release
--------------------------------------------------------------------------------
================================================================================
csmock-3.6.1-1.el8 (FEDORA-EPEL-2024-551e413775)
A mock wrapper for Static Analysis tools
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Kamil Dudka <kdudka(a)redhat.com> - 3.6.1-1
- update to latest upstream
--------------------------------------------------------------------------------
================================================================================
gfal2-2.23.0-1.el8 (FEDORA-EPEL-2024-8ebdfb5eaa)
Grid file access library 2.0
--------------------------------------------------------------------------------
Update Information:
New upstream release v2.23.0
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Mihai Patrascoiu <mihai.patrascoiu(a)cern.ch> - 2.23.0-1
- Upstream release 2.23.0
* Wed Jul 24 2024 Miroslav Suchý <msuchy(a)redhat.com> - 2.22.2-3
- convert license to SPDX
* Thu Jul 18 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.22.2-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
libmongocrypt-1.11.0-1.el8 (FEDORA-EPEL-2024-90d3d1015a)
The companion C library for client side encryption in drivers
--------------------------------------------------------------------------------
Update Information:
Version 1.11.0
New features
Support range algorithm as stable.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Remi Collet <remi(a)remirepo.net> - 1.11.0-1
- update to 1.11.0
--------------------------------------------------------------------------------
================================================================================
scorep-6.0-21.el8 (FEDORA-EPEL-2024-ba19a61736)
Scalable Performance Measurement Infrastructure for Parallel Codes
--------------------------------------------------------------------------------
Update Information:
Rebuild for clang 17
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Orion Poplawski <orion(a)nwra.com> - 6.0-21
- Rebuild for clang 17 (RHEL 8.10)
--------------------------------------------------------------------------------
================================================================================
srm-ifce-1.24.7-1.el8 (FEDORA-EPEL-2024-eea0d555f5)
SRM client side library
--------------------------------------------------------------------------------
Update Information:
New upstream release v1.24.7
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Mihai Patrascoiu <mihai.patrascoiu(a)cern.ch> - 1.24.7-1
- Upstream release 1.24.7
* Wed Jul 24 2024 Miroslav Suchý <msuchy(a)redhat.com> - 1.24.6-5
- convert license to SPDX
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.24.6-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Sat Jan 27 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.24.6-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sat Jul 22 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.24.6-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
syncthing-1.27.9-1.el8 (FEDORA-EPEL-2024-c93aaf4031)
Continuous File Synchronization
--------------------------------------------------------------------------------
Update Information:
Update to version 1.27.9.
Release notes:
1.27.8: https://github.com/syncthing/syncthing/releases/tag/v1.27.8
1.27.9: https://github.com/syncthing/syncthing/releases/tag/v1.27.9
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 Fabio Valentini <decathorpe(a)gmail.com> - 1.27.9-1
- Update to version 1.27.9; Fixes RHBZ#2290442
--------------------------------------------------------------------------------
================================================================================
youtube-dl-2024.08.01.git71223bf-1.el8 (FEDORA-EPEL-2024-8d34fbe41a)
A small command-line program to download online videos
--------------------------------------------------------------------------------
Update Information:
Update to latest snapshot
--------------------------------------------------------------------------------
ChangeLog:
* Fri Aug 2 2024 David Bold <davidsch(a)fedoraproject.org> - 2024.08.01.git71223bf-1
- Update to latest git snapshot 71223bf from 2024.08.01
* Mon Jul 29 2024 David Bold <davidsch(a)fedoraproject.org> - 2024.07.25.gite1b3fa2-1
- Update to latest git snapshot e1b3fa2 from 2024.07.25
--------------------------------------------------------------------------------
The following Fedora EPEL 8 Security updates need testing:
Age URL
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-d40458db4b trafficserver-9.2.5-1.el8
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-08de4453df chromium-127.0.6533.72-1.el8
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-2b876f90b2 xrdp-0.10.1-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
ImageMagick-6.9.13.14-1.el8
libdivide-5.1-1.el8
python-copr-common-0.25-1.el8
Details about builds:
================================================================================
ImageMagick-6.9.13.14-1.el8 (FEDORA-EPEL-2024-5efb0dbd99)
An X application for displaying and manipulating images
--------------------------------------------------------------------------------
Update Information:
ImageMagick update to 6.9.13-14
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 1 2024 Sérgio Basto <sergio(a)serjux.com> - 1:6.9.13.14-1
- Update ImageMagick to 6.9.13.14
* Thu Oct 19 2023 Sérgio Basto <sergio(a)serjux.com> - 1:6.9.12.93-2
- Mass rebuild for libRaw
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2241775 - TRIAGE-CVE-2023-5341 ImageMagick: Heap use-after-free in coders/bmp.c [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2241775
--------------------------------------------------------------------------------
================================================================================
libdivide-5.1-1.el8 (FEDORA-EPEL-2024-2048739dc8)
Optimized integer division
--------------------------------------------------------------------------------
Update Information:
Update to 5.1: “This is a maintenance release. This release mainly fixes a C++
compilation failure by the upcoming GCC 15 compiler.”
https://github.com/ridiculousfish/libdivide/releases/tag/v5.1
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 1 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 5.1-1
- Update to 5.1 (close RHBZ#2302025)
* Thu Aug 1 2024 Jerry James <loganjerry(a)gmail.com> - 5.0-11
- Add VCS field
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2302025 - libdivide-5.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2302025
--------------------------------------------------------------------------------
================================================================================
python-copr-common-0.25-1.el8 (FEDORA-EPEL-2024-f5e2857ea2)
Python code used by Copr
--------------------------------------------------------------------------------
Update Information:
Settings for Pulp in future versions of Copr.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 1 2024 Miroslav Suchý <msuchy(a)redhat.com> 0.25-1
- frontend, backend, common: don't limit the storage to pulp only
--------------------------------------------------------------------------------
The following Fedora EPEL 9 Security updates need testing:
Age URL
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-504d1abdb5 trafficserver-9.2.5-1.el9
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-862b797b08 chromium-127.0.6533.72-1.el9
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-94499c0981 xrdp-0.10.1-1.el9
The following builds have been pushed to Fedora EPEL 9 updates-testing
ImageMagick-6.9.13.14-1.el9
libdivide-5.1-1.el9
packit-0.100.0-1.el9
python-copr-common-0.25-1.el9
python-specfile-0.32.1-1.el9
Details about builds:
================================================================================
ImageMagick-6.9.13.14-1.el9 (FEDORA-EPEL-2024-03b4facc42)
An X application for displaying and manipulating images
--------------------------------------------------------------------------------
Update Information:
ImageMagick update to 6.9.13-14
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 1 2024 Sérgio Basto <sergio(a)serjux.com> - 1:6.9.13.14-1
- Update ImageMagick to 6.9.13.14
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2241775 - TRIAGE-CVE-2023-5341 ImageMagick: Heap use-after-free in coders/bmp.c [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2241775
--------------------------------------------------------------------------------
================================================================================
libdivide-5.1-1.el9 (FEDORA-EPEL-2024-eb02446b89)
Optimized integer division
--------------------------------------------------------------------------------
Update Information:
Update to 5.1: “This is a maintenance release. This release mainly fixes a C++
compilation failure by the upcoming GCC 15 compiler.”
https://github.com/ridiculousfish/libdivide/releases/tag/v5.1
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 1 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 5.1-1
- Update to 5.1 (close RHBZ#2302025)
* Thu Aug 1 2024 Jerry James <loganjerry(a)gmail.com> - 5.0-13
- Add VCS field
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2302025 - libdivide-5.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2302025
--------------------------------------------------------------------------------
================================================================================
packit-0.100.0-1.el9 (FEDORA-EPEL-2024-12b2711eaa)
A tool for integrating upstream projects with Fedora operating system
--------------------------------------------------------------------------------
Update Information:
Automatic update for python-specfile-0.32.1-1.el9, packit-0.100.0-1.el9.
Changelog for python-specfile
* Mon Jul 29 2024 Packit <hello(a)packit.dev> - 0.32.1-1
- Fixed two issues related to condition parsing. (#405)
Changelog for packit
* Mon Jul 29 2024 Packit <hello(a)packit.dev> - 0.100.0-1
- `packit pull-from-upstream` now allows omitting `upstream_project_url` in the
configuration in which case the interaction with the upstream repository is
skipped during release syncing. (#2354)
- We have implemented a CLI support for Koji builds against CBS Koji instance.
(#2267)
--------------------------------------------------------------------------------
ChangeLog:
* Mon Jul 29 2024 Packit <hello(a)packit.dev> - 0.100.0-1
- `packit pull-from-upstream` now allows omitting `upstream_project_url` in the configuration in which case the interaction with the upstream repository is skipped during release syncing. (#2354)
- We have implemented a CLI support for Koji builds against CBS Koji instance. (#2267)
--------------------------------------------------------------------------------
================================================================================
python-copr-common-0.25-1.el9 (FEDORA-EPEL-2024-c565123fc0)
Python code used by Copr
--------------------------------------------------------------------------------
Update Information:
Settings for Pulp in future versions of Copr.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Aug 1 2024 Miroslav Suchý <msuchy(a)redhat.com> 0.25-1
- frontend, backend, common: don't limit the storage to pulp only
--------------------------------------------------------------------------------
================================================================================
python-specfile-0.32.1-1.el9 (FEDORA-EPEL-2024-12b2711eaa)
A library for parsing and manipulating RPM spec files
--------------------------------------------------------------------------------
Update Information:
Automatic update for python-specfile-0.32.1-1.el9, packit-0.100.0-1.el9.
Changelog for python-specfile
* Mon Jul 29 2024 Packit <hello(a)packit.dev> - 0.32.1-1
- Fixed two issues related to condition parsing. (#405)
Changelog for packit
* Mon Jul 29 2024 Packit <hello(a)packit.dev> - 0.100.0-1
- `packit pull-from-upstream` now allows omitting `upstream_project_url` in the
configuration in which case the interaction with the upstream repository is
skipped during release syncing. (#2354)
- We have implemented a CLI support for Koji builds against CBS Koji instance.
(#2267)
--------------------------------------------------------------------------------
ChangeLog:
* Mon Jul 29 2024 Packit <hello(a)packit.dev> - 0.32.1-1
- Fixed two issues related to condition parsing. (#405)
--------------------------------------------------------------------------------
The following Fedora EPEL 8 Security updates need testing:
Age URL
4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-d40458db4b trafficserver-9.2.5-1.el8
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-08de4453df chromium-127.0.6533.72-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
fedora-license-data-1.53-1.el8
xrdp-0.10.1-1.el8
Details about builds:
================================================================================
fedora-license-data-1.53-1.el8 (FEDORA-EPEL-2024-9cf3935c0c)
Fedora Linux license data
--------------------------------------------------------------------------------
Update Information:
Automatic update for fedora-license-data-1.53-1.el8.
Changelog for fedora-license-data
* Wed Jul 31 2024 Miroslav Suchý <msuchy(a)redhat.com> 1.53-1
- add HPND-Netrek license
- Add license text for py-sdl2 Public Domain license
- remove LicenseRef-framed as ulem license was extended to allow LicenseRef-
framed variation
- add HIDAPI license
- add Ruby-pty license
- add LicenseRef-OASIS-spec
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Miroslav Suchý <msuchy(a)redhat.com> 1.53-1
- add HPND-Netrek license
- Add license text for py-sdl2 Public Domain license
- remove LicenseRef-framed as ulem license was extended to allow LicenseRef-
framed variation
- add HIDAPI license
- add Ruby-pty license
- add LicenseRef-OASIS-spec
--------------------------------------------------------------------------------
================================================================================
xrdp-0.10.1-1.el8 (FEDORA-EPEL-2024-2b876f90b2)
Open source remote desktop protocol (RDP) server
--------------------------------------------------------------------------------
Update Information:
Release notes for xrdp v0.10.1 (2024/07/31)
General announcements
A clipboard bugfix included in this release is sponsored by Krämer Pferdesport
GmbH & Co KG. We very much appreciate the sponsorship.
Please consider sponsoring or making a donation to the project if you like xrdp.
We accept financial contributions via Open Collective. Direct donations to each
developer via GitHub Sponsors are also welcomed.
Security fixes
Unauthenticated RDP security scan finding / partial auth bypass (no CVE). Thanks
to @txtdawg for reporting this.
New features
GFX-RFX lossy compression levels are now selectable depending on connection type
on the client (#3183, backport of #2973)
Bug fixes
A regression in the code for creating the chansrv FUSE directory has been fixed
(#3088, backport of #3082)
Fix a systemd dependency ("network-online.target") (#3088, backport of #3086)
A problem in session list processing which could result in incorrect display
assignments has been fixed (#3088, backport of #3103)
A problem in GFX resizing which could lead to a SEGV in xrdp has been fixed
(#3088, backport of #3107)
A problem with the US Dvorak keyboard layout has been resolved (#3088, backport
of #3112)
A regression bug when pasting image to LibreOffice has been fixed [Sponsored by
Krämer Pferdesport GmbH & Co KG] (#3102 #3120)
Fix a regression when the server tries to negotiate GFX when max_bpp is not high
enough (#3118 #3122)
Fix a GFX multi-monitor screen placing issue on minimise/maximize (#3075 #3127)
Fix an issue some files are not included properly in release tarball (#3149
#3150)
Using 'I' in the session selection policy now works correctly (#3167 #3171)
A potential name buffer overflow in the redirector has been fixed [no security
implications] (#3175)
Screens wider than 4096 pixels should now be supported (#3083)
An unnecessary licensing exchange during connection setup has been removed. This
was causing problems for FIPS-compliant clients (#3132 backport of #3143)
Internal changes
FreeBSD CI bumped to 13.3 (#3088, backport of #3104)
Changes for users
None since v0.10.0.
If moving from v0.9.x, read the v0.10.0 release note.
Changes for packagers or developers
None since v0.10.0.
If moving from v0.9.x, read the v0.10.0 release note.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Bojan Smojver <bojan(a)rexursive.com> - 1:0.10.1-1
- Update to 0.10.1
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1:0.10.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
The following Fedora EPEL 9 Security updates need testing:
Age URL
4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-504d1abdb5 trafficserver-9.2.5-1.el9
0 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-862b797b08 chromium-127.0.6533.72-1.el9
The following builds have been pushed to Fedora EPEL 9 updates-testing
fedora-license-data-1.53-1.el9
rust-deunicode-1.6.0-1.el9
rust-open-5.3.0-1.el9
rust-reqwest0.11-0.11.27-4.el9
rust-uuid-1.10.0-1.el9
xrdp-0.10.1-1.el9
Details about builds:
================================================================================
fedora-license-data-1.53-1.el9 (FEDORA-EPEL-2024-0e6cc57734)
Fedora Linux license data
--------------------------------------------------------------------------------
Update Information:
Automatic update for fedora-license-data-1.53-1.el9.
Changelog for fedora-license-data
* Wed Jul 31 2024 Miroslav Suchý <msuchy(a)redhat.com> 1.53-1
- add HPND-Netrek license
- Add license text for py-sdl2 Public Domain license
- remove LicenseRef-framed as ulem license was extended to allow LicenseRef-
framed variation
- add HIDAPI license
- add Ruby-pty license
- add LicenseRef-OASIS-spec
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Miroslav Suchý <msuchy(a)redhat.com> 1.53-1
- add HPND-Netrek license
- Add license text for py-sdl2 Public Domain license
- remove LicenseRef-framed as ulem license was extended to allow LicenseRef-
framed variation
- add HIDAPI license
- add Ruby-pty license
- add LicenseRef-OASIS-spec
--------------------------------------------------------------------------------
================================================================================
rust-deunicode-1.6.0-1.el9 (FEDORA-EPEL-2024-6dff260ba0)
Convert Unicode strings to pure ASCII by intelligently transliterating them
--------------------------------------------------------------------------------
Update Information:
Update to version 1.6.0
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Michel Lind <salimma(a)fedoraproject.org> - 1.6.0-1
- Update to version 1.6.0; Fixes RHBZ#2302079
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.4.4-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2302079 - rust-deunicode-1.6.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2302079
--------------------------------------------------------------------------------
================================================================================
rust-open-5.3.0-1.el9 (FEDORA-EPEL-2024-846998396a)
Open a path or URL using the program configured on the system
--------------------------------------------------------------------------------
Update Information:
Update to version 5.3.0
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Michel Lind <salimma(a)fedoraproject.org> - 5.3.0-1
- Update to version 5.3.0; Fixes RHBZ#2297020
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 5.2.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2297020 - rust-open-5.3.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2297020
--------------------------------------------------------------------------------
================================================================================
rust-reqwest0.11-0.11.27-4.el9 (FEDORA-EPEL-2024-0c79ad0616)
Higher level HTTP client library
--------------------------------------------------------------------------------
Update Information:
Drop unused support for brotli compression.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.11.27-4
- Drop unused support for brotli
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.11.27-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-uuid-1.10.0-1.el9 (FEDORA-EPEL-2024-ce778b5edf)
Library to generate and parse UUIDs
--------------------------------------------------------------------------------
Update Information:
Update to version 1.10.0
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Michel Lind <salimma(a)fedoraproject.org> - 1.10.0-1
- Update to version 1.10.0; Fixes RHBZ#2296419
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.9.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2296419 - rust-uuid-1.10.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2296419
--------------------------------------------------------------------------------
================================================================================
xrdp-0.10.1-1.el9 (FEDORA-EPEL-2024-94499c0981)
Open source remote desktop protocol (RDP) server
--------------------------------------------------------------------------------
Update Information:
Release notes for xrdp v0.10.1 (2024/07/31)
General announcements
A clipboard bugfix included in this release is sponsored by Krämer Pferdesport
GmbH & Co KG. We very much appreciate the sponsorship.
Please consider sponsoring or making a donation to the project if you like xrdp.
We accept financial contributions via Open Collective. Direct donations to each
developer via GitHub Sponsors are also welcomed.
Security fixes
Unauthenticated RDP security scan finding / partial auth bypass (no CVE). Thanks
to @txtdawg for reporting this.
New features
GFX-RFX lossy compression levels are now selectable depending on connection type
on the client (#3183, backport of #2973)
Bug fixes
A regression in the code for creating the chansrv FUSE directory has been fixed
(#3088, backport of #3082)
Fix a systemd dependency ("network-online.target") (#3088, backport of #3086)
A problem in session list processing which could result in incorrect display
assignments has been fixed (#3088, backport of #3103)
A problem in GFX resizing which could lead to a SEGV in xrdp has been fixed
(#3088, backport of #3107)
A problem with the US Dvorak keyboard layout has been resolved (#3088, backport
of #3112)
A regression bug when pasting image to LibreOffice has been fixed [Sponsored by
Krämer Pferdesport GmbH & Co KG] (#3102 #3120)
Fix a regression when the server tries to negotiate GFX when max_bpp is not high
enough (#3118 #3122)
Fix a GFX multi-monitor screen placing issue on minimise/maximize (#3075 #3127)
Fix an issue some files are not included properly in release tarball (#3149
#3150)
Using 'I' in the session selection policy now works correctly (#3167 #3171)
A potential name buffer overflow in the redirector has been fixed [no security
implications] (#3175)
Screens wider than 4096 pixels should now be supported (#3083)
An unnecessary licensing exchange during connection setup has been removed. This
was causing problems for FIPS-compliant clients (#3132 backport of #3143)
Internal changes
FreeBSD CI bumped to 13.3 (#3088, backport of #3104)
Changes for users
None since v0.10.0.
If moving from v0.9.x, read the v0.10.0 release note.
Changes for packagers or developers
None since v0.10.0.
If moving from v0.9.x, read the v0.10.0 release note.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jul 31 2024 Bojan Smojver <bojan(a)rexursive.com> - 1:0.10.1-1
- Update to 0.10.1
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1:0.10.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------