The following Fedora EPEL 6 Security updates need testing:
Age URL
534
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3....
49
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11274/ssmtp-2.61...
10
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11703/chicken-4....
10
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11706/fedmsg-0.7...
7
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11733/php-pecl-x...
6
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11737/zabbix20-2...
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11750/zabbix-1.8...
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11771/mod_fcgid-...
The following builds have been pushed to Fedora EPEL 6 updates-testing
drupal7-features-2.0-0.8.rc5.el6
fann-2.2.0-5.el6
golang-github-gorilla-context-0-0.17.git708054d.el6
golang-github-gorilla-mux-0-0.7.gite718e93.el6
golang-github-kr-pty-0-0.13.git3b1f648.el6
golang-googlecode-net-0-0.8.hg84a4013f96e0.el6
lz4-r106-3.el6
mod_fcgid-2.3.9-1.el6
nodejs-bignumber-js-1.2.0-2.el6
nodejs-mysql-2.0.0-alpha9.1.el6
python-fedmsg-meta-fedora-infrastructure-0.2.3-1.el6
python-sanction-0.3.1-1.el6
python-webassets-0.8-3.el6
Details about builds:
================================================================================
drupal7-features-2.0-0.8.rc5.el6 (FEDORA-EPEL-2013-11775)
Provides feature management for Drupal
--------------------------------------------------------------------------------
Update Information:
Upstream changelog for this release:
https://drupal.org/node/2106567
--------------------------------------------------------------------------------
ChangeLog:
* Mon Oct 7 2013 Paul W. Frields <stickster(a)gmail.com> - 2.0-0.8.rc5
- Update to upstream 2.0-rc5 release for bug fixes
- Upstream changelog for this release:
https://drupal.org/node/2106567
--------------------------------------------------------------------------------
================================================================================
fann-2.2.0-5.el6 (FEDORA-EPEL-2013-11768)
A fast artificial neural network library
--------------------------------------------------------------------------------
Update Information:
First build for EPEL-6
--------------------------------------------------------------------------------
================================================================================
golang-github-gorilla-context-0-0.17.git708054d.el6 (FEDORA-EPEL-2013-11781)
A golang registry for global request variables
--------------------------------------------------------------------------------
Update Information:
no longer noarch, cause no golang for ppc64.
pkg archives no longer installed,dep for gorilla/mux.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1001300 - Review Request: golang-github-gorilla-context - A golang registry
for global request variables
https://bugzilla.redhat.com/show_bug.cgi?id=1001300
--------------------------------------------------------------------------------
================================================================================
golang-github-gorilla-mux-0-0.7.gite718e93.el6 (FEDORA-EPEL-2013-11770)
A powerful URL router and dispatcher for golang
--------------------------------------------------------------------------------
Update Information:
no longer noarch, cause no golang for ppc64.
pkg archives no longer installed, dep for docker.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1001317 - Review Request: golang-github-gorilla-mux - A powerful URL router
and dispatcher for golang
https://bugzilla.redhat.com/show_bug.cgi?id=1001317
--------------------------------------------------------------------------------
================================================================================
golang-github-kr-pty-0-0.13.git3b1f648.el6 (FEDORA-EPEL-2013-11769)
PTY interface for Go
--------------------------------------------------------------------------------
Update Information:
no longer noarch, cause no golang for ppc64.
Fixes docker first run error.
pkg archives no longer installed,dep for docker.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1001396 - Review Request: golang-github-kr-pty - PTY interface for Go
https://bugzilla.redhat.com/show_bug.cgi?id=1001396
[ 2 ] Bug #1012701 - update for O_NOCTTY fix
https://bugzilla.redhat.com/show_bug.cgi?id=1012701
--------------------------------------------------------------------------------
================================================================================
golang-googlecode-net-0-0.8.hg84a4013f96e0.el6 (FEDORA-EPEL-2013-11778)
Supplementary Go networking libraries
--------------------------------------------------------------------------------
Update Information:
no longer noarch, cause no golang for ppc64.
pkg archives no longer installed,dep for docker.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1009967 - Review Request: golang-googlecode-net - Supplementary Go networking
libraries
https://bugzilla.redhat.com/show_bug.cgi?id=1009967
--------------------------------------------------------------------------------
================================================================================
lz4-r106-3.el6 (FEDORA-EPEL-2013-11779)
Extremely fast compression algorithm
--------------------------------------------------------------------------------
Update Information:
Introducing lz4 - Extremely fast compression algorithm.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1015263 - Review request: lz4 Extremely fast compression algorithm
https://bugzilla.redhat.com/show_bug.cgi?id=1015263
--------------------------------------------------------------------------------
================================================================================
mod_fcgid-2.3.9-1.el6 (FEDORA-EPEL-2013-11771)
FastCGI interface module for Apache 2
--------------------------------------------------------------------------------
Update Information:
Current upstream maintenance release, including a security fix for a possible heap buffer
overwrite issue (CVE-2013-4365).
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 8 2013 Paul Howarth <paul(a)city-fan.org> 2.3.9-1
- Update to 2.3.9
- SECURITY: Fix possible heap buffer overwrite (CVE-2013-4365)
- Add experimental cmake-based build system for Windows
- Correctly parse quotation and escaped spaces in FcgidWrapper and the AAA
Authenticator/Authorizor/Access directives' command line argument, as
currently documented (PR#51194)
- Honor quoted FcgidCmdOptions arguments (notably for InitialEnv
assignments) (PR#51657)
- Conform script response parsing with mod_cgid and ensure no response body
is sent when ap_meets_conditions() determines that request conditions are
met
- Improve logging in access control hook functions
- Avoid making internal sub-requests and processing Location headers when in
FCGI_AUTHORIZER mode, as the auth hook functions already treat Location
headers returned by scripts as an error since redirections are not
meaningful in this mode
- Revert fix for PR#53693, added in 2.3.8 but undocumented
- Fix issues with a minor optimization added in 2.3.8
* Sat Aug 3 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org>
2.3.7-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Thu Feb 14 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org>
2.3.7-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
* Fri Jul 20 2012 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org>
2.3.7-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
* Wed Jul 4 2012 Paul Howarth <paul(a)city-fan.org> 2.3.7-4
- Move tmpfiles.d config from %{_sysconfdir} to %{_prefix}/lib
* Wed May 2 2012 Paul Howarth <paul(a)city-fan.org> 2.3.7-3
- Make %files list more explicit
* Wed May 2 2012 Joe Orton <jorton(a)redhat.com> 2.3.7-2
- Use 10- prefix for conf file in conf.modules.d with httpd ≥ 2.4
- Use _httpd_confdir throughout
--------------------------------------------------------------------------------
================================================================================
nodejs-bignumber-js-1.2.0-2.el6 (FEDORA-EPEL-2013-11776)
Library for arbitrary-precision decimal and non-decimal arithmetic
--------------------------------------------------------------------------------
Update Information:
Newpackage
--------------------------------------------------------------------------------
================================================================================
nodejs-mysql-2.0.0-alpha9.1.el6 (FEDORA-EPEL-2013-11767)
A node.js driver for mysql
--------------------------------------------------------------------------------
Update Information:
Newpackage
--------------------------------------------------------------------------------
================================================================================
python-fedmsg-meta-fedora-infrastructure-0.2.3-1.el6 (FEDORA-EPEL-2013-11774)
Metadata providers for Fedora Infrastructure's fedmsg deployment
--------------------------------------------------------------------------------
Update Information:
Latest upstream with pkgdb2 and fedocal processors.
Latest upstream.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 1 2013 Ralph Bean <rbean(a)redhat.com> - 0.2.3-1
- Latest upstream with pkgdb2 and fedocal.
* Fri Sep 27 2013 Ralph Bean <rbean(a)redhat.com> - 0.2.2-1
- Latest upstream with new processor for nuancier.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1014495 - python-fedmsg-meta-fedora-infrastructure-0.2.3 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1014495
--------------------------------------------------------------------------------
================================================================================
python-sanction-0.3.1-1.el6 (FEDORA-EPEL-2013-11782)
A simple, lightweight OAuth2 client
--------------------------------------------------------------------------------
Update Information:
Latest upstream, notably python3 subpackage.
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1013357 - sanction 0.3.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1013357
--------------------------------------------------------------------------------
================================================================================
python-webassets-0.8-3.el6 (FEDORA-EPEL-2013-11773)
Media asset management for python
--------------------------------------------------------------------------------
Update Information:
python-webassets new build 0.8-3.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Sep 24 2013 Praveen Kumar <kumarpraveen.nitdgp(a)gmail.com> - 0.8-3
- Added python-setuptools as requires.
--------------------------------------------------------------------------------