The following Fedora EPEL 6 Security updates need testing:
Age URL
796
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3....
143
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0440/fwsnort-1.6...
128
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0590/oath-toolki...
87
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1011/php-ZendFra...
37
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1471/chicken-4.8...
33
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1477/drupal7-vie...
23
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1563/mono-2.10.8...
17
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1584/python-djbl...
15
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1616/puppet-2.7....
15
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1608/mcollective...
15
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1628/hiera-1.0.0...
14
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1634/python-djan...
12
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1648/owncloud-6....
12
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1649/python-jinj...
10
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1657/lynis-1.5.6...
8
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1627/php-horde-H...
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1694/zabbix-1.8....
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1693/perl-Email-...
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1698/zabbix20-2....
1
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1732/seamonkey-2...
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1753/ansible-1.6...
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1745/mediawiki11...
The following builds have been pushed to Fedora EPEL 6 updates-testing
CGSI-gSOAP-1.3.6-2.el6
amavisd-new-2.9.0-1.el6
ansible-1.6.5-1.el6
createrepo_c-0.4.1-1.el6
drupal7-languageicons-1.1-1.el6
drupal7-taxonomy_access_fix-2.1-1.el6
gccxml-0.9.0-0.23.20140610.gita012b8fe.el6
gle-4.2.4c-14.el6
mediawiki119-1.19.17-1.el6
mozilla-adblockplus-2.6.3-1.el6
mozilla-https-everywhere-3.5.3-1.el6
mysql-proxy-0.8.4-1.el6
php-horde-Horde-Mapi-1.0.3-1.el6
php-horde-Horde-Pack-1.0.2-1.el6
python-docker-registry-core-1.0.6-2.el6
python-okaara-1.0.35-1.el6
python-stem-1.2.2-3.el6
voms-2.0.11-6.el6
Details about builds:
================================================================================
CGSI-gSOAP-1.3.6-2.el6 (FEDORA-EPEL-2014-1756)
GSI plugin for gSOAP
--------------------------------------------------------------------------------
Update Information:
Updated to 1.3.6 release
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jun 27 2014 Mattias Ellert <mattias.ellert(a)fysast.uu.se> - 1.3.6-2
- Update the source description for the new release
* Fri Jun 27 2014 Alejandro Alvarez Ayllon <aalvarez(a)cern.ch> - 1.3.6-1
- Update for new upstream release
* Fri Jun 6 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.3.5-8
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri Oct 18 2013 Adrien Devresse <adevress at cern.ch> - 1.3.5-7
- Rebuilt for gsoap release
* Thu Aug 8 2013 Mattias Ellert <mattias.ellert(a)fysast.uu.se> - 1.3.5-6
- Use _pkgdocdir
* Fri Aug 2 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.3.5-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Wed Feb 13 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.3.5-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
* Wed Jul 18 2012 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.3.5-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
amavisd-new-2.9.0-1.el6 (FEDORA-EPEL-2014-1741)
Email filter with virus scanner and spamassassin support
--------------------------------------------------------------------------------
Update Information:
Update to version 2.9.0
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Juan Orti Alcaine <jorti(a)fedoraproject.org> - 2.9.0-1
- Update to version 2.9.0
- Rework amavisd-new-2.9.0-conf.patch
- Fix missing dependencies
--------------------------------------------------------------------------------
================================================================================
ansible-1.6.5-1.el6 (FEDORA-EPEL-2014-1753)
SSH-based configuration management, deployment, and task execution system
--------------------------------------------------------------------------------
Update Information:
Update to 1.6.5. Further fixes on security issue.
Update to 1.6.4 with a security fix
Update to 1.6.3. See
https://github.com/ansible/ansible/blob/release1.6.3/CHANGELOG.md for
details
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jun 25 2014 Kevin Fenzi <kevin(a)scrye.com> 1.6.5-1
- Update to 1.6.5
* Wed Jun 25 2014 Kevin Fenzi <kevin(a)scrye.com> 1.6.4-1
- Update to 1.6.4
* Mon Jun 9 2014 Kevin Fenzi <kevin(a)scrye.com> 1.6.3-1
- Update to 1.6.3
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.6.2-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
createrepo_c-0.4.1-1.el6 (FEDORA-EPEL-2014-1755)
Creates a common metadata repository
--------------------------------------------------------------------------------
Update Information:
Initialize threads correctly on old versions of GLib2 (RhBug: 1108787)
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.4.1-1
- Initialize threads correctly on old versions of GLib2 (RhBug: 1108787)
- Do not print log domain (get rid off C_CREATEREPOLIB prefix in log messages)
- Implements support for --cachedir
- New option --retain-old-md-by-age
- Few small API changes
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1108787 - mergerepo_c sets wrong <size>0</size> in
repodata/repomd.xml
https://bugzilla.redhat.com/show_bug.cgi?id=1108787
--------------------------------------------------------------------------------
================================================================================
drupal7-languageicons-1.1-1.el6 (FEDORA-EPEL-2014-1751)
Adds icons to language links
--------------------------------------------------------------------------------
Update Information:
[
1.1](https://www.drupal.org/node/2264675)
------------------------------------------
* Fixed passing of Image class attribute. (#2230323)
* Removed unnecessary file list in info file. (#1554200)
* Set the module category to "Multilingual". (#2047503)
* Add link to the configuration page via the info file. (#1626648)
* Renamed the module back to "Language Icons". (#1954058)
* New flags:
* Filipino (#1796274)
* Afrikaans (South African) (#1471600)
* Malaysian (#2230379)
* Tibetan (#1961450)
* Belarus (#1309930)
* Somali (#551092)
See the [Git
log](http://drupalcode.org/project/languageicons.git/log/7.x-1.0..7.x-1.1)
for a full changelog.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 1.1-1
- Updated to 1.1 (BZ #1096599; release notes =
https://www.drupal.org/node/2264675)
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.0-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Sat Aug 3 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
drupal7-taxonomy_access_fix-2.1-1.el6 (FEDORA-EPEL-2014-1746)
Fixes the crooked access checks for Taxonomy pages
--------------------------------------------------------------------------------
Update Information:
[
2.1](https://www.drupal.org/node/2274235)
------------------------------------------
* Issue #2157451
* Issue #2211281
See the [Git
log](http://cgit.drupalcode.org/taxonomy_access_fix/log/?id=7.x-2.0..7.x-...
for a full changelog.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Shawn Iwinski <shawn.iwinski(a)gmail.com> - 2.1-1
- Updated to 2.1 (BZ #1101179; release notes
https://www.drupal.org/node/2274235)
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2.0-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1101179 - drupal7-taxonomy_access_fix-2.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1101179
--------------------------------------------------------------------------------
================================================================================
gccxml-0.9.0-0.23.20140610.gita012b8fe.el6 (FEDORA-EPEL-2014-1738)
XML output extension to GCC
--------------------------------------------------------------------------------
Update Information:
Now contains upstream's support files for gcc 4.9
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Mattias Ellert <mattias.ellert(a)fysast.uu.se> -
0.9.0-0.23.20140610.gita012b8fe
- Updated git snapshot
- Now contains support files for gcc 4.9
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
0.9.0-0.22.20131209.git9a114c0c
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri May 23 2014 Brent Baude <baude(a)us.ibm.com> - 0.9.0-0.21.20131209.git9a114c0c
- Adding ppc64le support
--------------------------------------------------------------------------------
================================================================================
gle-4.2.4c-14.el6 (FEDORA-EPEL-2014-1740)
Graphics Layout Engine
--------------------------------------------------------------------------------
Update Information:
First releases in EPEL5 and EPEL6.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #229676 - Review Request: gle - Graphics Layout Engine
https://bugzilla.redhat.com/show_bug.cgi?id=229676
--------------------------------------------------------------------------------
================================================================================
mediawiki119-1.19.17-1.el6 (FEDORA-EPEL-2014-1745)
A wiki engine
--------------------------------------------------------------------------------
Update Information:
Update to 1.19.17.
Fixes various security issues.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Patrick Uiterwijk <puiterwijk(a)redhat.com> - 1.19.17-1
- Update to 1.19.17
- (bug 65839) SECURITY: Prevent external resources in SVG files
- (bug 66428) MimeMagic: Don't seek before BOF. This has weird side effects like only
extracting the tail of the file partially or not at all
* Wed Jun 25 2014 Patrick Uiterwijk <puiterwijk(a)redhat.com> - 1.19.16-1
- Update to 1.19.16
- (bug 65501) SECURITY: Don't parse usernames as wikitext on Special:PasswordReset
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1113134 - mediawiki: security update
https://bugzilla.redhat.com/show_bug.cgi?id=1113134
[ 2 ] Bug #1104222 - CVE-2014-3966 mediawiki: XSS flaw due to improper parsing of
Special:PasswordReset
https://bugzilla.redhat.com/show_bug.cgi?id=1104222
--------------------------------------------------------------------------------
================================================================================
mozilla-adblockplus-2.6.3-1.el6 (FEDORA-EPEL-2014-1761)
Adblocking extension for Mozilla Firefox, Thunderbird, and SeaMonkey
--------------------------------------------------------------------------------
Update Information:
Lots of performance improvements.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Russell Golden <niveusluna(a)niveusluna.org> - 2.6.3-1
- Many performance improvements
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2.4.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
mozilla-https-everywhere-3.5.3-1.el6 (FEDORA-EPEL-2014-1733)
HTTPS/HSTS enforcement extension for Mozilla Firefox and SeaMonkey
--------------------------------------------------------------------------------
Update Information:
The cake is not a lie!
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jun 25 2014 Russell Golden <niveusluna(a)niveusluna.org> - 3.5.3-1
- Now works when installed globally!
- Various ruleset fixes, including PCWorld.
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
3.5.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri May 30 2014 Russell Golden <niveusluna(a)niveusluna.org> - 3.5.1-1
- Revert
https://github.com/EFForg/https-everywhere/pull/134 due to YouTube
-- breakage.
- Re-enable ability to see all rulesets in enable/disable dialog.
- Added more Debian coverage.
- Fixes to Doubleclick, Guardian, Heroku, Home Depot, HypeMachine, IMDB,
-- Justin.tv, Kikatek, Mozilla, MyFitnessPal, Pinterest, XKCD, Reuters,
-- Technet, Tumblr, Wordpress, Yandex, Youtube, Flickr.
- Fix Australis icon positioning:
--
https://github.com/EFForg/https-everywhere/pull/216
* Wed Apr 16 2014 Russell Golden <niveusluna(a)niveusluna.org> - 3.5-1
- Merge all non-ruleset changes from 4.0development.16
- Merge all new/modified rulesets from 4.0development.16 that are
-- in the Alexa Top 1000 using utils/alexa-ruleset-checker.py. For a full list,
-- see utils/alexa-logs/07042014.log.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1100493 - can't access
http://www.pcworld.com with
mozilla-https-everywhere enabled
https://bugzilla.redhat.com/show_bug.cgi?id=1100493
--------------------------------------------------------------------------------
================================================================================
mysql-proxy-0.8.4-1.el6 (FEDORA-EPEL-2014-1759)
A proxy for the MySQL Client/Server protocol
--------------------------------------------------------------------------------
Update Information:
New upstream release MySQL-Proxy 0.8.4
This fixes RHBZ#902456 where MySQL-Proxy would not start up properly.
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jun 27 2014 Dominic Hopf <dmaphy(a)fedoraproject.org> - 0.8.4-1
- New upstream release MySQL-Proxy 0.8.4
* Mon Aug 26 2013 Teguh DC <dheche(a)fedoraproject.org> - 0.8.2-2
- Move configuration to /etc/mysql-proxy.cnf (using defaults-file option in initscript)
- Call admin and proxy plugins by default
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #902456 - mysql-proxy Init script is incorrect, so service doesn't start
https://bugzilla.redhat.com/show_bug.cgi?id=902456
--------------------------------------------------------------------------------
================================================================================
php-horde-Horde-Mapi-1.0.3-1.el6 (FEDORA-EPEL-2014-1744)
MAPI utility library
--------------------------------------------------------------------------------
Update Information:
Horde_Mapi 1.0.3
* [mjr] Make bcmath an optional, not required, extension (Bug #13285).
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jun 27 2014 Remi Collet <remi(a)fedoraproject.org> - 1.0.3-1
- Update to 1.0.3
--------------------------------------------------------------------------------
================================================================================
php-horde-Horde-Pack-1.0.2-1.el6 (FEDORA-EPEL-2014-1752)
Horde Pack Utility
--------------------------------------------------------------------------------
Update Information:
Horde_Pack 1.0.2
* [mms] Don't use JSON driver to pack if input contains non-UTF8 data (Bug #13275).
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Remi Collet <remi(a)fedoraproject.org> - 1.0.2-1
- Update to 1.0.2
--------------------------------------------------------------------------------
================================================================================
python-docker-registry-core-1.0.6-2.el6 (FEDORA-EPEL-2014-1757)
Core package for docker-registry (drivers) developers
--------------------------------------------------------------------------------
Update Information:
Resolves: rhbz#1111917 - change files section as per review
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1111917 - Review Request: python-docker-registry-core - Core package for
docker-registry (drivers) developers
https://bugzilla.redhat.com/show_bug.cgi?id=1111917
--------------------------------------------------------------------------------
================================================================================
python-okaara-1.0.35-1.el6 (FEDORA-EPEL-2014-1739)
Python command line utilities
--------------------------------------------------------------------------------
Update Information:
Release 1.0.35
Fix for python 2.4 incompatibility
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Jay Dobies <jason.dobies(a)redhat.com> 1.0.35-1
- fixing a bug where Prompt.prompt_password passes the wrong arguments to
another function. (mhrivnak(a)redhat.com)
--------------------------------------------------------------------------------
================================================================================
python-stem-1.2.2-3.el6 (FEDORA-EPEL-2014-1760)
Python controller library for Tor
--------------------------------------------------------------------------------
Update Information:
Stem is a python controller library for Tor
--------------------------------------------------------------------------------
================================================================================
voms-2.0.11-6.el6 (FEDORA-EPEL-2014-1735)
Virtual Organization Membership Service
--------------------------------------------------------------------------------
Update Information:
Fix stack smashing from SHA2 certificates.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 26 2014 Mattias Ellert <mattias.ellert(a)fysast.uu.se> - 2.0.11-6
- Clean up SHA2 patch
* Thu Jun 26 2014 Mattias Ellert <mattias.ellert(a)fysast.uu.se> - 2.0.11-5
- Fix compilation problems when strndup is already defined
* Thu Jun 26 2014 Mattias Ellert <mattias.ellert(a)fysast.uu.se> - 2.0.11-4
- Patch that fixes a stack smash when SHA2 certificates are used
* Sun Jun 8 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2.0.11-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
--------------------------------------------------------------------------------