The following builds have been pushed to Fedora EPEL 9 updates-testing
chromium-129.0.6668.70-1.el9
csdiff-3.5.1-1.el9
csmock-3.7.1-1.el9
python-backports-tarfile-1.2.0-1.el9
python-jaraco-context-6.0.1-3.el9
python-jaraco-test-5.5.1-2.el9
python-pydicom-data-1.0.0^20240919git8da482f-2.el9
python-zlib-ng-0.5.1-1.el9
rust-adler2-2.0.0-1.el9
rust-flate2-1.0.33-1.el9
rust-html5ever-0.29.0-1.el9
rust-html5ever0.26-0.26.0-1.el9
rust-libz-sys-1.1.20-1.el9
rust-markup5ever-0.14.0-1.el9
rust-markup5ever0.11-0.11.0-1.el9
rust-miniz_oxide-0.8.0-1.el9
rust-miniz_oxide0.7-0.7.4-1.el9
rust-xml5ever-0.20.0-1.el9
rust-xml5ever0.17-0.17.0-1.el9
vlc-3.0.21-8.el9
Details about builds:
================================================================================
chromium-129.0.6668.70-1.el9 (FEDORA-EPEL-2024-89511748af)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
Update to 129.0.6668.70
* High CVE-2024-9120: Use after free in Dawn
* High CVE-2024-9121: Inappropriate implementation in V8
* High CVE-2024-9122: Type Confusion in V8
* High CVE-2024-9123: Integer overflow in Skia
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Than Ngo <than(a)redhat.com> - 129.0.6668.70-1
- update to 129.0.6668.70
* High CVE-2024-9120: Use after free in Dawn
* High CVE-2024-9121: Inappropriate implementation in V8
* High CVE-2024-9122: Type Confusion in V8
* High CVE-2024-9123: Integer overflow in Skia
* Thu Sep 19 2024 Than Ngo <than(a)redhat.com> - 129.0.6668.58-2
- clean up
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314362 - CVE-2024-7024 chromium: V8 Sandbox Bypass: wasm function signature confusion leading to out of sandbox arbitrary read/write [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314362
[ 2 ] Bug #2314363 - CVE-2024-7024 chromium: V8 Sandbox Bypass: wasm function signature confusion leading to out of sandbox arbitrary read/write [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314363
[ 3 ] Bug #2314365 - CVE-2024-7022 chromium: out of bounds memory access [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314365
[ 4 ] Bug #2314366 - CVE-2024-7022 chromium: out of bounds memory access [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314366
[ 5 ] Bug #2314367 - CVE-2024-7020 chromium: Inappropriate implementation in Autofill in Google Chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314367
[ 6 ] Bug #2314368 - CVE-2024-7020 chromium: Inappropriate implementation in Autofill in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314368
[ 7 ] Bug #2314369 - CVE-2024-7019 chromium: Inappropriate implementation in UI in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314369
[ 8 ] Bug #2314370 - CVE-2024-7019 chromium: Inappropriate implementation in UI in Google Chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314370
[ 9 ] Bug #2314371 - CVE-2024-7018 chromium: Heap buffer overflow in PDF in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314371
[ 10 ] Bug #2314372 - CVE-2024-7018 chromium: Heap buffer overflow in PDF in Google Chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314372
[ 11 ] Bug #2314375 - CVE-2023-7282 chromium: domain spoofing in google chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314375
[ 12 ] Bug #2314376 - CVE-2023-7282 chromium: domain spoofing in google chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314376
[ 13 ] Bug #2314379 - CVE-2023-7281 chromium: Inappropriate implementation in Compositing in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314379
--------------------------------------------------------------------------------
================================================================================
csdiff-3.5.1-1.el9 (FEDORA-EPEL-2024-cf959350ee)
Non-interactive tools for processing code scan results in plain-text
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Kamil Dudka <kdudka(a)redhat.com> - 3.5.1-1
- update to latest upstream release
--------------------------------------------------------------------------------
================================================================================
csmock-3.7.1-1.el9 (FEDORA-EPEL-2024-cf959350ee)
A mock wrapper for Static Analysis tools
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Kamil Dudka <kdudka(a)redhat.com> - 3.7.1-1
- update to latest upstream
--------------------------------------------------------------------------------
================================================================================
python-backports-tarfile-1.2.0-1.el9 (FEDORA-EPEL-2024-34fb660455)
Backport of CPython tarfile module
--------------------------------------------------------------------------------
Update Information:
Initial imports to epel9 of:
- python-backports-tarfile 1.2.0
- python-jaraco-context 6.0.1
- python-jaraco-test 5.5.1
--------------------------------------------------------------------------------
ChangeLog:
* Fri Sep 20 2024 Cristian Le <cristian.le(a)mpsd.mpg.de> - 1.2.0-1
- import rhbz#2312851
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2303229 - Package to EPEL9 and Fedora as well
https://bugzilla.redhat.com/show_bug.cgi?id=2303229
[ 2 ] Bug #2303449 - Request Fedora branches and EPEL9
https://bugzilla.redhat.com/show_bug.cgi?id=2303449
--------------------------------------------------------------------------------
================================================================================
python-jaraco-context-6.0.1-3.el9 (FEDORA-EPEL-2024-34fb660455)
Context managers by jaraco
--------------------------------------------------------------------------------
Update Information:
Initial imports to epel9 of:
- python-backports-tarfile 1.2.0
- python-jaraco-context 6.0.1
- python-jaraco-test 5.5.1
--------------------------------------------------------------------------------
ChangeLog:
* Thu Sep 19 2024 Cristian Le <cristian.le(a)mpsd.mpg.de> - 6.0.1-3
- Make package buildable for epel>=9
* Thu Sep 19 2024 Ondrej Mosnáček <omosnacek(a)gmail.com> - 6.0.1-2
- Fix and enable tests
* Tue Aug 20 2024 Ondrej Mosnáček <omosnacek(a)gmail.com> - 6.0.1-1
- Update to version 6.0.1 (fedora#2306046)
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 5.3.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Sat Jun 22 2024 Ondrej Mosnáček <omosnacek(a)gmail.com> - 5.3.0-1
- Update to version 5.3.0 (fedora#2273523)
* Fri Jun 7 2024 Python Maint <python-maint(a)redhat.com> - 4.3.0-4
- Rebuilt for Python 3.13
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.3.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Jan 22 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 4.3.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Thu Sep 7 2023 Ondrej Mosnáček <omosnacek(a)gmail.com> - 4.3.0-1
- Initial import (fedora#2232628)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2303229 - Package to EPEL9 and Fedora as well
https://bugzilla.redhat.com/show_bug.cgi?id=2303229
[ 2 ] Bug #2303449 - Request Fedora branches and EPEL9
https://bugzilla.redhat.com/show_bug.cgi?id=2303449
--------------------------------------------------------------------------------
================================================================================
python-jaraco-test-5.5.1-2.el9 (FEDORA-EPEL-2024-34fb660455)
Testing support by jaraco
--------------------------------------------------------------------------------
Update Information:
Initial imports to epel9 of:
- python-backports-tarfile 1.2.0
- python-jaraco-context 6.0.1
- python-jaraco-test 5.5.1
--------------------------------------------------------------------------------
ChangeLog:
* Fri Sep 20 2024 Cristian Le <cristian.le(a)mpsd.mpg.de> - 5.5.1-2
- Make package buildable for epel>=9
* Fri Sep 20 2024 Cristian Le <cristian.le(a)mpsd.mpg.de> - 5.5.1-1
- Update to 5.5.1
* Mon Aug 12 2024 Lumir Balhar <lbalhar(a)redhat.com> - 5.4.0-4
- Fix compatibility with pytest 8 (rhbz#2279864)
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 5.4.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Sat Jun 8 2024 Python Maint <python-maint(a)redhat.com> - 5.4.0-2
- Rebuilt for Python 3.13
* Wed Apr 3 2024 Lumir Balhar <lbalhar(a)redhat.com> - 5.4.0-1
- Initial import (fedora#2270683).
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2303229 - Package to EPEL9 and Fedora as well
https://bugzilla.redhat.com/show_bug.cgi?id=2303229
[ 2 ] Bug #2303449 - Request Fedora branches and EPEL9
https://bugzilla.redhat.com/show_bug.cgi?id=2303449
--------------------------------------------------------------------------------
================================================================================
python-pydicom-data-1.0.0^20240919git8da482f-2.el9 (FEDORA-EPEL-2024-fce29bca7a)
Most of the test files used with pydicom, downloaded to cache when needed
--------------------------------------------------------------------------------
Update Information:
Initial package (close RHBZ#2314638)
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 1.0.0^20240919git8da482f-2
- Backport to EPEL9
* Wed Sep 25 2024 Benjamin A. Beasley <code(a)musicinmybrain.net>
- Initial package (close RHBZ#2314638)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314638 - Review Request: python-pydicom-data - Most of the test files used with pydicom, downloaded to cache when needed
https://bugzilla.redhat.com/show_bug.cgi?id=2314638
--------------------------------------------------------------------------------
================================================================================
python-zlib-ng-0.5.1-1.el9 (FEDORA-EPEL-2024-37e02ac791)
Drop-in replacement for zlib and gzip modules using zlib-ng
--------------------------------------------------------------------------------
Update Information:
0.5.0
Wheels are now built for MacOS arm64 architectures.
Fix a bug where READ and WRITE in zlib_ng.gzip_ng were inconsistent with the
values in gzip on Python 3.13
Small simplifications to the gzip_ng.compress and gzip_ng.decompress functions,
which should lead to less overhead.
0.5.1
Fix a bug where flushing in threaded mode did not write the data to the output
file.
Threaded reading and writing do no longer block exiting when an exception occurs
in the main thread.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Packit <hello(a)packit.dev> - 0.5.1-1
- Update to 0.5.1 upstream release
- Resolves: rhbz#2314618
* Wed Sep 25 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 0.5.0-3
- Work around older setuptools in EPEL9
* Wed Sep 25 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 0.5.0-2
- Work around versioningit unavailability in EPEL9
* Wed Sep 25 2024 Packit <hello(a)packit.dev> - 0.5.0-1
- Update to 0.5.0 upstream release
- Resolves: rhbz#2303861
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314618 - python-zlib-ng-0.5.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2314618
--------------------------------------------------------------------------------
================================================================================
rust-adler2-2.0.0-1.el9 (FEDORA-EPEL-2024-f9a73a7664)
Simple clean-room implementation of the Adler-32 checksum
--------------------------------------------------------------------------------
Update Information:
Update the flate2 crate to version 1.0.33.
Update the libz-sys crate to version 1.1.20.
Update the miniz_oxide crate to version 0.8.0.
Add a compat package for version 0.7 of the miniz_oxide crate.
Initial packaging of the adler2 crate.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Fabio Valentini <decathorpe(a)gmail.com> - 2.0.0-1
- Initial import (#2314007)
--------------------------------------------------------------------------------
================================================================================
rust-flate2-1.0.33-1.el9 (FEDORA-EPEL-2024-f9a73a7664)
DEFLATE compression and decompression exposed as Read/BufRead/Write streams
--------------------------------------------------------------------------------
Update Information:
Update the flate2 crate to version 1.0.33.
Update the libz-sys crate to version 1.1.20.
Update the miniz_oxide crate to version 0.8.0.
Add a compat package for version 0.7 of the miniz_oxide crate.
Initial packaging of the adler2 crate.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Fabio Valentini <decathorpe(a)gmail.com> - 1.0.33-1
- Update to version 1.0.33; Fixes RHBZ#2306034
--------------------------------------------------------------------------------
================================================================================
rust-html5ever-0.29.0-1.el9 (FEDORA-EPEL-2024-2e08a2af16)
High-performance browser-grade HTML5 parser
--------------------------------------------------------------------------------
Update Information:
Update the html5ever crate to version 0.29.0 and add a compat package for
version 0.26.
Update the xml5ever crate to version 0.20.0 and add a compat package for version
0.17.
Update the markup5ever crate to version 0.14.0 and add a compat package for
version 0.11.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Sep 24 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.29.0-1
- Update to version 0.29.0; Fixes RHBZ#2270932
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.26.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.26.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.26.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-html5ever0.26-0.26.0-1.el9 (FEDORA-EPEL-2024-2e08a2af16)
High-performance browser-grade HTML5 parser
--------------------------------------------------------------------------------
Update Information:
Update the html5ever crate to version 0.29.0 and add a compat package for
version 0.26.
Update the xml5ever crate to version 0.20.0 and add a compat package for version
0.17.
Update the markup5ever crate to version 0.14.0 and add a compat package for
version 0.11.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.26.0-1
- Initial import (html5ever 0.26 compat package)
--------------------------------------------------------------------------------
================================================================================
rust-libz-sys-1.1.20-1.el9 (FEDORA-EPEL-2024-f9a73a7664)
Low-level bindings to the system libz library (also known as zlib)
--------------------------------------------------------------------------------
Update Information:
Update the flate2 crate to version 1.0.33.
Update the libz-sys crate to version 1.1.20.
Update the miniz_oxide crate to version 0.8.0.
Add a compat package for version 0.7 of the miniz_oxide crate.
Initial packaging of the adler2 crate.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Fabio Valentini <decathorpe(a)gmail.com> - 1.1.20-1
- Update to version 1.1.20; Fixes RHBZ#2283120
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.1.16-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-markup5ever-0.14.0-1.el9 (FEDORA-EPEL-2024-2e08a2af16)
Common code for xml5ever and html5ever
--------------------------------------------------------------------------------
Update Information:
Update the html5ever crate to version 0.29.0 and add a compat package for
version 0.26.
Update the xml5ever crate to version 0.20.0 and add a compat package for version
0.17.
Update the markup5ever crate to version 0.14.0 and add a compat package for
version 0.11.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Sep 24 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.14.0-1
- Update to version 0.14.0; Fixes RHBZ#2270944
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.11.0-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.11.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-markup5ever0.11-0.11.0-1.el9 (FEDORA-EPEL-2024-2e08a2af16)
Common code for xml5ever and html5ever
--------------------------------------------------------------------------------
Update Information:
Update the html5ever crate to version 0.29.0 and add a compat package for
version 0.26.
Update the xml5ever crate to version 0.20.0 and add a compat package for version
0.17.
Update the markup5ever crate to version 0.14.0 and add a compat package for
version 0.11.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.11.0-1
- Initial import (markup5ever 0.11 compat package)
--------------------------------------------------------------------------------
================================================================================
rust-miniz_oxide-0.8.0-1.el9 (FEDORA-EPEL-2024-f9a73a7664)
DEFLATE compression and decompression library rewritten in Rust based on miniz
--------------------------------------------------------------------------------
Update Information:
Update the flate2 crate to version 1.0.33.
Update the libz-sys crate to version 1.1.20.
Update the miniz_oxide crate to version 0.8.0.
Add a compat package for version 0.7 of the miniz_oxide crate.
Initial packaging of the adler2 crate.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Sep 23 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.8.0-1
- Update to version 0.8.0; Fixes RHBZ#2303762
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.7.4-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-miniz_oxide0.7-0.7.4-1.el9 (FEDORA-EPEL-2024-f9a73a7664)
DEFLATE compression and decompression library rewritten in Rust based on miniz
--------------------------------------------------------------------------------
Update Information:
Update the flate2 crate to version 1.0.33.
Update the libz-sys crate to version 1.1.20.
Update the miniz_oxide crate to version 0.8.0.
Add a compat package for version 0.7 of the miniz_oxide crate.
Initial packaging of the adler2 crate.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.7.4-1
- Initial import (miniz_oxide 0.7 compat package)
--------------------------------------------------------------------------------
================================================================================
rust-xml5ever-0.20.0-1.el9 (FEDORA-EPEL-2024-2e08a2af16)
Push based streaming parser for XML
--------------------------------------------------------------------------------
Update Information:
Update the html5ever crate to version 0.29.0 and add a compat package for
version 0.26.
Update the xml5ever crate to version 0.20.0 and add a compat package for version
0.17.
Update the markup5ever crate to version 0.14.0 and add a compat package for
version 0.11.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Sep 24 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.20.0-1
- Update to version 0.20.0; Fixes RHBZ#2270924
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.17.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Sat Jan 27 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.17.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sat Jul 22 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.17.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-xml5ever0.17-0.17.0-1.el9 (FEDORA-EPEL-2024-2e08a2af16)
Push based streaming parser for xml
--------------------------------------------------------------------------------
Update Information:
Update the html5ever crate to version 0.29.0 and add a compat package for
version 0.26.
Update the xml5ever crate to version 0.20.0 and add a compat package for version
0.17.
Update the markup5ever crate to version 0.14.0 and add a compat package for
version 0.11.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.17.0-1
- Initial import (xml5ever 0.17 compat package)
--------------------------------------------------------------------------------
================================================================================
vlc-3.0.21-8.el9 (FEDORA-EPEL-2024-6c437661a4)
The cross-platform open-source multimedia framework, player and server
--------------------------------------------------------------------------------
Update Information:
Split out vlc-plugins-extra subpackage, enable aribsub plugin, fix for opus
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Yaakov Selkowitz <yselkowi(a)redhat.com> - 1:3.0.21-8
- Fix file listing for EPEL 9
* Mon Sep 16 2024 Yaakov Selkowitz <yselkowi(a)redhat.com> - 1:3.0.21-7
- Enable aribsub
* Fri Sep 6 2024 Yaakov Selkowitz <yselkowi(a)redhat.com> - 1:3.0.21-6
- Fix opus channel mapping family one parsing
* Fri Sep 6 2024 Yaakov Selkowitz <yselkowi(a)redhat.com> - 1:3.0.21-5
- Add plugins-all, separate plugins-extra
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1:3.0.21-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Sun Jul 14 2024 Yaakov Selkowitz <yselkowi(a)redhat.com> - 1:3.0.21-3
- Enable RDP access plugin
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2307919 - actual vlc failed to play multicanal opus audio
https://bugzilla.redhat.com/show_bug.cgi?id=2307919
--------------------------------------------------------------------------------
The following Fedora EPEL 8 Security updates need testing:
Age URL
13 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-31d4c55df0 arm-none-eabi-binutils-cs-2.43-1.el8 arm-none-eabi-gcc-cs-12.4.0-1.el8 arm-none-eabi-newlib-4.4.0.20231231-1.el8
2 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-d7489f4064 python-zipp-0.5.1-4.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
PEGTL-2.8.3-2.el8
chromium-129.0.6668.70-1.el8
csdiff-3.5.1-1.el8
csmock-3.7.1-1.el8
proftpd-1.3.6e-8.el8
Details about builds:
================================================================================
PEGTL-2.8.3-2.el8 (FEDORA-EPEL-2024-4bca08f0e9)
Parsing Expression Grammar Template Library
--------------------------------------------------------------------------------
Update Information:
Update License to SPDX. Switch to CMake, run tests, and ship CMake files. Update
from 2.8.1 to 2.8.3, with some bug fixes:
2.8.2
Fixed parse tree node generation to correctly remove intermediate nodes.
2.8.3
Fixed excessive read-ahead with incremental inputs.
Added state manipulators remove_first_state, remove_last_states,
rotate_states_right, rotate_states_left, and reverse_states to contrib.
Reduced the number of intermediate parse tree nodes.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.8.3-2
- Switch to CMake, run tests, and ship CMake files
- Use a better source URL
* Thu Sep 3 2020 Attila Lakatos <alakatos(a)redhat.com> - 2.8.3-1
- Update to 2.8.3
Resolves: rhbz#1742557
--------------------------------------------------------------------------------
================================================================================
chromium-129.0.6668.70-1.el8 (FEDORA-EPEL-2024-5ec6a4bb83)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
Update to 129.0.6668.70
* High CVE-2024-9120: Use after free in Dawn
* High CVE-2024-9121: Inappropriate implementation in V8
* High CVE-2024-9122: Type Confusion in V8
* High CVE-2024-9123: Integer overflow in Skia
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Than Ngo <than(a)redhat.com> - 129.0.6668.70-1
- update to 129.0.6668.70
* High CVE-2024-9120: Use after free in Dawn
* High CVE-2024-9121: Inappropriate implementation in V8
* High CVE-2024-9122: Type Confusion in V8
* High CVE-2024-9123: Integer overflow in Skia
* Thu Sep 19 2024 Than Ngo <than(a)redhat.com> - 129.0.6668.58-2
- clean up
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314362 - CVE-2024-7024 chromium: V8 Sandbox Bypass: wasm function signature confusion leading to out of sandbox arbitrary read/write [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314362
[ 2 ] Bug #2314363 - CVE-2024-7024 chromium: V8 Sandbox Bypass: wasm function signature confusion leading to out of sandbox arbitrary read/write [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314363
[ 3 ] Bug #2314365 - CVE-2024-7022 chromium: out of bounds memory access [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314365
[ 4 ] Bug #2314366 - CVE-2024-7022 chromium: out of bounds memory access [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314366
[ 5 ] Bug #2314367 - CVE-2024-7020 chromium: Inappropriate implementation in Autofill in Google Chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314367
[ 6 ] Bug #2314368 - CVE-2024-7020 chromium: Inappropriate implementation in Autofill in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314368
[ 7 ] Bug #2314369 - CVE-2024-7019 chromium: Inappropriate implementation in UI in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314369
[ 8 ] Bug #2314370 - CVE-2024-7019 chromium: Inappropriate implementation in UI in Google Chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314370
[ 9 ] Bug #2314371 - CVE-2024-7018 chromium: Heap buffer overflow in PDF in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314371
[ 10 ] Bug #2314372 - CVE-2024-7018 chromium: Heap buffer overflow in PDF in Google Chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314372
[ 11 ] Bug #2314375 - CVE-2023-7282 chromium: domain spoofing in google chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314375
[ 12 ] Bug #2314376 - CVE-2023-7282 chromium: domain spoofing in google chrome [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314376
[ 13 ] Bug #2314379 - CVE-2023-7281 chromium: Inappropriate implementation in Compositing in Google Chrome [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2314379
--------------------------------------------------------------------------------
================================================================================
csdiff-3.5.1-1.el8 (FEDORA-EPEL-2024-536d5d7552)
Non-interactive tools for processing code scan results in plain-text
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Kamil Dudka <kdudka(a)redhat.com> - 3.5.1-1
- update to latest upstream release
--------------------------------------------------------------------------------
================================================================================
csmock-3.7.1-1.el8 (FEDORA-EPEL-2024-536d5d7552)
A mock wrapper for Static Analysis tools
--------------------------------------------------------------------------------
Update Information:
update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 25 2024 Kamil Dudka <kdudka(a)redhat.com> - 3.7.1-1
- update to latest upstream
--------------------------------------------------------------------------------
================================================================================
proftpd-1.3.6e-8.el8 (FEDORA-EPEL-2024-f429921623)
Flexible, stable and highly-configurable FTP server
--------------------------------------------------------------------------------
Update Information:
This update includes a backport of an upstream fix for high CPU load and poor
performance when changing directory in a large directory tree.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Sep 20 2024 Paul Howarth <paul(a)city-fan.org> - 1.3.6e-8
- Add fix for slow accesses in large directory trees (rhbz#2310341)
- http://bugs.proftpd.org/show_bug.cgi?id=4307
- https://github.com/proftpd/proftpd/pull/525
--------------------------------------------------------------------------------
Hello,
On Sat, 2024-09-21 at 10:03 +0000, bugzilla(a)redhat.com wrote:
> Hello,
>
> Please note that this comment was generated automatically by
> https://pagure.io/releng/blob/main/f/scripts/ftbfs-fti/follow-policy.py
Have this scripts running on EPEL branches would help me detect FTI
more quickly , instead be users reporting it
Best regards,
> If you feel that this output has mistakes, please open an issue at
> https://pagure.io/releng/
>
>
> If you don't react accordingly to the policy for FTBFS/FTI bugs
> (
> https://docs.fedoraproject.org/en-US/fesco/Fails_to_build_from_source_
> Fails_to_install/),
> your package may be orphaned in 8+ weeks.
>
>
> P.S. The data was generated solely from koji buildroot, so it might
> be newer
> than the latest compose or the content on mirrors. To reproduce, use
> the
> koji/local repo only, e.g. in mock:
>
> $ mock -r fedora-42-x86_64 --config-opts mirrored=False install
> cros-sommelier
>
>
> P.P.S. If this bug has been reported in the middle of upgrading
> multiple
> dependent packages, please consider using side tags:
> https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/#updating-inter-d…
>
> Thanks!
--
Sérgio M. B.
It seems Redhat is not including php-sodium with rhel10.
Poking at the Fedora spec file, this looks to be by design:
https://src.fedoraproject.org/rpms/php/blob/rawhide/f/php.spec#_52
I’m wondering what our options are for packages that depend on it.
Since php-pecl-libsodium was previously deprecated due to php-sodium, should it now be resurrected for rhel10?
This is probably a question for Remi.
The following Fedora EPEL 8 Security updates need testing:
Age URL
9 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2024-31d4c55df0 arm-none-eabi-binutils-cs-2.43-1.el8 arm-none-eabi-gcc-cs-12.4.0-1.el8 arm-none-eabi-newlib-4.4.0.20231231-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
koji-1.35.0-1.el8
libopenmpt-0.7.10-1.el8
openbgpd-8.6-1.el8
rpki-client-9.3-1.el8
Details about builds:
================================================================================
koji-1.35.0-1.el8 (FEDORA-EPEL-2024-812b8e317f)
Build system tools
--------------------------------------------------------------------------------
Update Information:
koji version 1.35.0 with various fixes. See
https://docs.pagure.org/koji/release_notes/release_notes_1.35/ for more details.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 18 2024 Kevin Fenzi <kevin(a)scrye.com> - 1.35.0-1
- Update to 1.35.0. Fixes rhbz#2312848
* Mon Sep 2 2024 Miroslav Suchý <msuchy(a)redhat.com> - 1.34.1-6
- convert license to SPDX
* Mon Aug 26 2024 Adam Williamson <awilliam(a)redhat.com> - 1.34.1-5
- Backport PR #4184 to support overriding version and releasever for Kiwi
* Thu Aug 22 2024 Adam Williamson <awilliam(a)redhat.com> - 1.34.1-4
- Backport PR #4157 to support overriding Kiwi image file name format
* Thu Jul 18 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.34.1-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jun 7 2024 Python Maint <python-maint(a)redhat.com> - 1.34.1-2
- Rebuilt for Python 3.13
* Wed Jun 5 2024 Kevin Fenzi <kevin(a)scrye.com> - 1.34.1-1
- Upgrade to 1.34.1. Fixes rhbz#2283973
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2276019 - koji rpm 1.34 contains sql schema upgrade for 1.35
https://bugzilla.redhat.com/show_bug.cgi?id=2276019
--------------------------------------------------------------------------------
================================================================================
libopenmpt-0.7.10-1.el8 (FEDORA-EPEL-2024-0cd60ef782)
C/C++ library to decode tracker music module (MOD) files
--------------------------------------------------------------------------------
Update Information:
libopenmpt 0.7.10 (2024-09-22)
[Change] FST was added to the list of supported file extension. AMP uses this
extension for multichannel MODs.
[Bug] The Android NDK build system did not enable C++20 when available.
Fixed inconsistency in length calculation and actual playback length with tempo
commands below 32 BPM in various formats (MDL, MED among others).
MED: Command 09 (set speed) was limited to 20 ticks per row instead of 32 ticks
per row.
MED: Allow tempo parameters < 32 BPM.
MED: Disallow free panning if hardware mixing is enabled.
For MOD-style vibrato, a speed parameter of 0 was not treated as effect memory.
Vibrato speed is now correct for both vibrato commands.
MED: Fix pattern index exhaustion in modules with multiple subsongs.
OKT: Don’t drop global commands when setting paired channel volume, and try to
write channel volume on the next row in this situation.
PTM: Use square root pan law, like in XM files.
SFX: Ignore unused data at end of oneshot samples which sometimes caused clicky
noises.
SFX: More accurate implementation of arpeggio effect.
mpg123: Update to v1.32.7 (2024-08-07).
minimp3: Update to fork
https://github.com/manxorist/minimp3/releases/tag/openmpt-2024-08-15-v4 commit
2116754771b79347ad2f39127abace2a093c383e (2024-08-15).
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Michael Schwendt <mschwendt(a)fedoraproject.org> - 0.7.10-1
- update to 0.7.10
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314099 - libopenmpt-0.7.10 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2314099
--------------------------------------------------------------------------------
================================================================================
openbgpd-8.6-1.el8 (FEDORA-EPEL-2024-0c1072ce38)
OpenBGPD Routing Daemon
--------------------------------------------------------------------------------
Update Information:
OpenBGPD 8.6
Filtered prefixes are now included in the Local-RIB if the config option rde rib
Loc-RIB include filtered is set.
Add bgpctl show rib filtered to show filtered prefixes.
Add min-version RTR config option and default to RTR version 1. Set min-version
to 2 to enable draft-ietf-sidrops-8210bis-14 and ASPA support or better define
the ASPA table in the config.
Adjust RTR ASPA pdu parser to follow draft-ietf-sidrops-8210bis-14
Check the max_prefix and max_out_prefix limits on config reload.
Fix race condition between TCP-MD5 key removal and session closure to ensure all
messages are sent with the proper TCP-MD5 signature.
Fix nexthop qualify via bgp by re-evaluating the nexthops when a BGP route is
added to the FIB.
Handle the CLUSTER_LIST attribute according to RFC7606.
Fix some undefined or non-portable behaviour when handling NULL / 0-sized
objects.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Robert Scheck <robert(a)fedoraproject.org> 8.6-1
- Upgrade to 8.6 (#2313604)
* Thu Jul 18 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 8.5-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2313604 - openbgpd-8.6 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313604
--------------------------------------------------------------------------------
================================================================================
rpki-client-9.3-1.el8 (FEDORA-EPEL-2024-56bba4b023)
OpenBSD RPKI validator to support BGP Origin Validation
--------------------------------------------------------------------------------
Update Information:
rpki-client 9.3
Avoid a quadratic complexity issue in ibuf_realloc() due to misuse of
recallocarray(). Transferring a manifest with a large FileAndHash list across a
privsep boundary could cost significant resources.
RRDP sessions are periodically reinitialized to snapshot at random intervals.
RRDP deltas and snapshots can diverge content-wise over time, leaving stale
files in the cache. Reinitialization is triggered at random with increasing
probability with increasing snapshot age, at least once every three months. this
helps garbage collection.
The internal state file format changed. The first run after an upgrade may
produce harmless warning messages about invalid last_reset.
Signed Prefix List statistics are now only emitted when rpki-client is run with
-x. This changes the JSON output: without -x some keys are missing from
'metadata'.
The -r command line option formerly enabling RRDP has long been the default and
is now removed.
The CRL number extension in CRLs is checked to be in the range [0..2^159-1] and
otherwise the CRL is considered invalid, see
https://datatracker.ietf.org/doc/html/draft-ietf-sidrops-rpki-crl-numbers
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Robert Scheck <robert(a)fedoraproject.org> 9.3-1
- Upgrade to 9.3 (#2314116)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314116 - rpki-client-9.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2314116
--------------------------------------------------------------------------------
The following builds have been pushed to Fedora EPEL 9 updates-testing
koji-1.35.0-1.el9
libopenmpt-0.7.10-1.el9
obs-studio-30.0.0-2.el9
openbgpd-8.6-1.el9
python-kubernetes-26.1.0-3.el9
rpki-client-9.3-1.el9
rust-hickory-client-0.24.1-4.el9
rust-hickory-proto-0.24.1-4.el9
rust-hickory-resolver-0.24.1-4.el9
rust-hostname-0.3.1-13.el9
rust-idna0.4-0.4.0-4.el9
rust-onefetch-2.22.0-1.el9
rust-onefetch-ascii-2.22.0-1.el9
rust-onefetch-image-2.22.0-1.el9
rust-onefetch-manifest-2.22.0-1.el9
rust-publicsuffix-2.2.3-6.el9
rust-yoke-0.7.4-1.el9
Details about builds:
================================================================================
koji-1.35.0-1.el9 (FEDORA-EPEL-2024-310a77c93b)
Build system tools
--------------------------------------------------------------------------------
Update Information:
koji version 1.35.0 with various fixes. See
https://docs.pagure.org/koji/release_notes/release_notes_1.35/ for more details.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Sep 18 2024 Kevin Fenzi <kevin(a)scrye.com> - 1.35.0-1
- Update to 1.35.0. Fixes rhbz#2312848
* Mon Sep 2 2024 Miroslav Suchý <msuchy(a)redhat.com> - 1.34.1-6
- convert license to SPDX
* Mon Aug 26 2024 Adam Williamson <awilliam(a)redhat.com> - 1.34.1-5
- Backport PR #4184 to support overriding version and releasever for Kiwi
* Thu Aug 22 2024 Adam Williamson <awilliam(a)redhat.com> - 1.34.1-4
- Backport PR #4157 to support overriding Kiwi image file name format
* Thu Jul 18 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.34.1-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jun 7 2024 Python Maint <python-maint(a)redhat.com> - 1.34.1-2
- Rebuilt for Python 3.13
* Wed Jun 5 2024 Kevin Fenzi <kevin(a)scrye.com> - 1.34.1-1
- Upgrade to 1.34.1. Fixes rhbz#2283973
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2276019 - koji rpm 1.34 contains sql schema upgrade for 1.35
https://bugzilla.redhat.com/show_bug.cgi?id=2276019
--------------------------------------------------------------------------------
================================================================================
libopenmpt-0.7.10-1.el9 (FEDORA-EPEL-2024-27c72548ac)
C/C++ library to decode tracker music module (MOD) files
--------------------------------------------------------------------------------
Update Information:
libopenmpt 0.7.10 (2024-09-22)
[Change] FST was added to the list of supported file extension. AMP uses this
extension for multichannel MODs.
[Bug] The Android NDK build system did not enable C++20 when available.
Fixed inconsistency in length calculation and actual playback length with tempo
commands below 32 BPM in various formats (MDL, MED among others).
MED: Command 09 (set speed) was limited to 20 ticks per row instead of 32 ticks
per row.
MED: Allow tempo parameters < 32 BPM.
MED: Disallow free panning if hardware mixing is enabled.
For MOD-style vibrato, a speed parameter of 0 was not treated as effect memory.
Vibrato speed is now correct for both vibrato commands.
MED: Fix pattern index exhaustion in modules with multiple subsongs.
OKT: Don’t drop global commands when setting paired channel volume, and try to
write channel volume on the next row in this situation.
PTM: Use square root pan law, like in XM files.
SFX: Ignore unused data at end of oneshot samples which sometimes caused clicky
noises.
SFX: More accurate implementation of arpeggio effect.
mpg123: Update to v1.32.7 (2024-08-07).
minimp3: Update to fork
https://github.com/manxorist/minimp3/releases/tag/openmpt-2024-08-15-v4 commit
2116754771b79347ad2f39127abace2a093c383e (2024-08-15).
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Michael Schwendt <mschwendt(a)fedoraproject.org> - 0.7.10-1
- update to 0.7.10
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314099 - libopenmpt-0.7.10 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2314099
--------------------------------------------------------------------------------
================================================================================
obs-studio-30.0.0-2.el9 (FEDORA-EPEL-2024-986c767a35)
Open Broadcaster Software Studio
--------------------------------------------------------------------------------
Update Information:
Rebuilt against current Qt6.6 in EPEL9 to fix installation issue.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Dominik Mierzejewski <dominik(a)greysector.net> - 30.0.0-2
- rebuilt for qt6 (resolves rhbz#2292436)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2292436 - obs-studio-libs 30.0.0 requires qt6-qtbase 6.5.2 but EPEL9 has 6.6.2
https://bugzilla.redhat.com/show_bug.cgi?id=2292436
--------------------------------------------------------------------------------
================================================================================
openbgpd-8.6-1.el9 (FEDORA-EPEL-2024-ce34ef5f80)
OpenBGPD Routing Daemon
--------------------------------------------------------------------------------
Update Information:
OpenBGPD 8.6
Filtered prefixes are now included in the Local-RIB if the config option rde rib
Loc-RIB include filtered is set.
Add bgpctl show rib filtered to show filtered prefixes.
Add min-version RTR config option and default to RTR version 1. Set min-version
to 2 to enable draft-ietf-sidrops-8210bis-14 and ASPA support or better define
the ASPA table in the config.
Adjust RTR ASPA pdu parser to follow draft-ietf-sidrops-8210bis-14
Check the max_prefix and max_out_prefix limits on config reload.
Fix race condition between TCP-MD5 key removal and session closure to ensure all
messages are sent with the proper TCP-MD5 signature.
Fix nexthop qualify via bgp by re-evaluating the nexthops when a BGP route is
added to the FIB.
Handle the CLUSTER_LIST attribute according to RFC7606.
Fix some undefined or non-portable behaviour when handling NULL / 0-sized
objects.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Robert Scheck <robert(a)fedoraproject.org> 8.6-1
- Upgrade to 8.6 (#2313604)
* Thu Jul 18 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 8.5-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2313604 - openbgpd-8.6 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313604
--------------------------------------------------------------------------------
================================================================================
python-kubernetes-26.1.0-3.el9 (FEDORA-EPEL-2024-83b7f13de4)
Python client for the kubernetes API.
--------------------------------------------------------------------------------
Update Information:
Fix epel9 fails to install for python-kubernetes-tests
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Jason Montleon <jmontleo(a)redhat.com 1:26.1.0-3
- Fix fail to install for tests sub-package for EPEL 9.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2313896 - python3-kubernetes-tests: fails to install from epel9/epel10
https://bugzilla.redhat.com/show_bug.cgi?id=2313896
--------------------------------------------------------------------------------
================================================================================
rpki-client-9.3-1.el9 (FEDORA-EPEL-2024-f03cebf110)
OpenBSD RPKI validator to support BGP Origin Validation
--------------------------------------------------------------------------------
Update Information:
rpki-client 9.3
Avoid a quadratic complexity issue in ibuf_realloc() due to misuse of
recallocarray(). Transferring a manifest with a large FileAndHash list across a
privsep boundary could cost significant resources.
RRDP sessions are periodically reinitialized to snapshot at random intervals.
RRDP deltas and snapshots can diverge content-wise over time, leaving stale
files in the cache. Reinitialization is triggered at random with increasing
probability with increasing snapshot age, at least once every three months. this
helps garbage collection.
The internal state file format changed. The first run after an upgrade may
produce harmless warning messages about invalid last_reset.
Signed Prefix List statistics are now only emitted when rpki-client is run with
-x. This changes the JSON output: without -x some keys are missing from
'metadata'.
The -r command line option formerly enabling RRDP has long been the default and
is now removed.
The CRL number extension in CRLs is checked to be in the range [0..2^159-1] and
otherwise the CRL is considered invalid, see
https://datatracker.ietf.org/doc/html/draft-ietf-sidrops-rpki-crl-numbers
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Robert Scheck <robert(a)fedoraproject.org> 9.3-1
- Upgrade to 9.3 (#2314116)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2314116 - rpki-client-9.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2314116
--------------------------------------------------------------------------------
================================================================================
rust-hickory-client-0.24.1-4.el9 (FEDORA-EPEL-2024-d183421f3b)
Hickory DNS is a safe and secure DNS library
--------------------------------------------------------------------------------
Update Information:
Drop the unused support for DNS-over-HTTPS and DNS-over-QUIC from the Hickory
DNS stack to avoid pulling in outdated versions of cryptography libraries and
other dependencies.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.1-4
- Drop even more unused features and dependencies
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.1-3
- Drop unused support for dns-over-https and dns-over-quic
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.24.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-hickory-proto-0.24.1-4.el9 (FEDORA-EPEL-2024-d183421f3b)
Hickory DNS is a safe and secure DNS library
--------------------------------------------------------------------------------
Update Information:
Drop the unused support for DNS-over-HTTPS and DNS-over-QUIC from the Hickory
DNS stack to avoid pulling in outdated versions of cryptography libraries and
other dependencies.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.1-4
- Drop even more unused features and dependencies
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.1-3
- Drop unused support for dns-over-https and dns-over-quic
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.24.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-hickory-resolver-0.24.1-4.el9 (FEDORA-EPEL-2024-d183421f3b)
Hickory DNS is a safe and secure DNS library
--------------------------------------------------------------------------------
Update Information:
Drop the unused support for DNS-over-HTTPS and DNS-over-QUIC from the Hickory
DNS stack to avoid pulling in outdated versions of cryptography libraries and
other dependencies.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.1-4
- Drop even more unused features and dependencies
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.24.1-3
- Drop unused support for dns-over-https and dns-over-quic
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.24.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-hostname-0.3.1-13.el9 (FEDORA-EPEL-2024-dcff1777bd)
Cross-platform system's host name functions
--------------------------------------------------------------------------------
Update Information:
Port from match_cfg to cfg-if and bump version-sync dependency from 0.8 to 0.9
to avoid pulling in obsolete libraries or old compat packages.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 21 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.3.1-13
- Port from match_cfg to cfg-if and bump version-sync from 0.8 to 0.9
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.3.1-12
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.3.1-11
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.3.1-10
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Wed May 17 2023 Fabio Valentini <decathorpe(a)gmail.com> - 0.3.1-9
- Regenerate with rust2rpm v24
* Fri Jan 20 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.3.1-7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-idna0.4-0.4.0-4.el9 (FEDORA-EPEL-2024-aa03cc8c12)
IDNA (Internationalizing Domain Names in Applications) and Punycode
--------------------------------------------------------------------------------
Update Information:
Drop unused, benchmark-only bencher dependency.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 0.4.0-4
- Drop unused, benchmark-only criterion dev-dependency
* Fri Jul 19 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.4.0-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 0.4.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-onefetch-2.22.0-1.el9 (FEDORA-EPEL-2024-8c00d0c50b)
Command-line Git information tool
--------------------------------------------------------------------------------
Update Information:
https://github.com/o2sh/onefetch/releases/tag/2.22.0
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.22.0-1
- Update to 2.22.0 (close RHBZ#2313678)
* Wed Sep 18 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.21.0-4
- Update rust2rpm.toml with gix 0.66 fixes
* Wed Sep 18 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.21.0-3
- Add patch upstream status for gix 0.66 patches
* Tue Sep 17 2024 blinxen <h-k-81(a)hotmail.com> - 2.21.0-2
- Update gix dependency to 0.66
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2313677 - rust-onefetch-ascii-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313677
[ 2 ] Bug #2313678 - rust-onefetch-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313678
[ 3 ] Bug #2313679 - rust-onefetch-image-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313679
--------------------------------------------------------------------------------
================================================================================
rust-onefetch-ascii-2.22.0-1.el9 (FEDORA-EPEL-2024-8c00d0c50b)
Display colorized ascii art to the terminal
--------------------------------------------------------------------------------
Update Information:
https://github.com/o2sh/onefetch/releases/tag/2.22.0
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.22.0-1
- Update to 2.22.0 (close RHBZ#2313677)
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.21.0-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2313677 - rust-onefetch-ascii-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313677
[ 2 ] Bug #2313678 - rust-onefetch-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313678
[ 3 ] Bug #2313679 - rust-onefetch-image-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313679
--------------------------------------------------------------------------------
================================================================================
rust-onefetch-image-2.22.0-1.el9 (FEDORA-EPEL-2024-8c00d0c50b)
Display images in the terminal
--------------------------------------------------------------------------------
Update Information:
https://github.com/o2sh/onefetch/releases/tag/2.22.0
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.22.0-1
- Update to 2.22.0 (close RHBZ#2313679)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2313677 - rust-onefetch-ascii-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313677
[ 2 ] Bug #2313678 - rust-onefetch-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313678
[ 3 ] Bug #2313679 - rust-onefetch-image-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313679
--------------------------------------------------------------------------------
================================================================================
rust-onefetch-manifest-2.22.0-1.el9 (FEDORA-EPEL-2024-8c00d0c50b)
Detect and parse manifest files
--------------------------------------------------------------------------------
Update Information:
https://github.com/o2sh/onefetch/releases/tag/2.22.0
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 2.22.0-1
- Update to 2.22.0
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.21.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2313677 - rust-onefetch-ascii-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313677
[ 2 ] Bug #2313678 - rust-onefetch-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313678
[ 3 ] Bug #2313679 - rust-onefetch-image-2.22.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2313679
--------------------------------------------------------------------------------
================================================================================
rust-publicsuffix-2.2.3-6.el9 (FEDORA-EPEL-2024-42001fae2e)
Extract root domain and suffix from a domain name
--------------------------------------------------------------------------------
Update Information:
Disable tests and bump idna dependency from 0.3 to 0.4 to avoid pulling in
obsolete and / or old versions dependencies.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Sep 22 2024 Fabio Valentini <decathorpe(a)gmail.com> - 2.2.3-6
- Disable tests and bump idna dependency from 0.3 to 0.4
* Sat Jul 20 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.2.3-5
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Fri Jan 26 2024 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.2.3-4
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Fri Jul 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.2.3-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
* Sat Jan 21 2023 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.2.3-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
rust-yoke-0.7.4-1.el9 (FEDORA-EPEL-2024-3182bb3344)
Abstraction allowing borrowed data to be carried along with its backing data
--------------------------------------------------------------------------------
Update Information:
Initial packages for some rust-idna 1.x dependencies:
rust-yoke
--------------------------------------------------------------------------------
ChangeLog:
* Sat Sep 21 2024 Benjamin A. Beasley <code(a)musicinmybrain.net> - 0.7.4-1
- Initial package (close RHBZ#2311985)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2311985 - Review Request: rust-yoke - Abstraction allowing borrowed data to be carried along with its backing data
https://bugzilla.redhat.com/show_bug.cgi?id=2311985
--------------------------------------------------------------------------------