The following Fedora EPEL 5 Security updates need testing:
Age URL
682
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5630/bugzilla-3....
173
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11560/fail2ban-0...
137
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11893/libguestfs...
112
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-12091/bip-0.8.9-...
102
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-12169/gc-7.1-6.el5
17
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0581/augeas-1.2....
17
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0541/drupal7-cto...
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0645/easy-rsa-2....
4
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0702/mod_auth_sh...
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0745/imapsync-1....
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0752/libssh-0.5....
The following builds have been pushed to Fedora EPEL 5 updates-testing
dnstop-20121017-3.el5
imapsync-1.584-2.el5
libssh-0.5.5-2.el5
shogun-data-0.8.1-0.2.git20140303.6615cf0.el5
Details about builds:
================================================================================
dnstop-20121017-3.el5 (FEDORA-EPEL-2014-0741)
Displays information about DNS traffic on your network
--------------------------------------------------------------------------------
Update Information:
EPEL5 branch update
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #550360 - Review Request: dnstop - Displays information about DNS traffic on
your network
https://bugzilla.redhat.com/show_bug.cgi?id=550360
--------------------------------------------------------------------------------
================================================================================
imapsync-1.584-2.el5 (FEDORA-EPEL-2014-0745)
Tool to migrate email between IMAP servers
--------------------------------------------------------------------------------
Update Information:
Disable releasecheck - CVE-2013-4279
--------------------------------------------------------------------------------
ChangeLog:
* Tue Mar 4 2014 Nick Bebout <nb(a)fedoraproject.org> - 1.584-2
- Disable releasecheck - CVE-2013-4279
* Thu Feb 13 2014 Nick Bebout <nb(a)fedoraproject.org> - 1.584-1
- Upgrade to 1.584
* Sun Dec 29 2013 Nick Bebout <nb(a)fedoraproject.org> - 1.580-1
- Upgrade to 1.580
* Thu Oct 17 2013 Nick Bebout <nb(a)fedoraproject.org> - 1.569-1
- Upgrade to 1.569
* Thu Sep 26 2013 Nick Bebout <nb(a)fedoraproject.org> - 1.567-1
- Upgrade to 1.567
* Mon Aug 19 2013 Nick Bebout <nb(a)fedoraproject.org> - 1.564-1
- Upgrade to 1.564
* Sun Aug 4 2013 Nick Bebout <nb(a)fedoraproject.org> - 1.558-1
- Upgrade to 1.558
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1000215 - CVE-2013-4279 imapsync default version check with
http://imapsync.lamiral.info information leakage
https://bugzilla.redhat.com/show_bug.cgi?id=1000215
--------------------------------------------------------------------------------
================================================================================
libssh-0.5.5-2.el5 (FEDORA-EPEL-2014-0752)
A library implementing the SSH2 protocol (0xbadc0de version)
--------------------------------------------------------------------------------
Update Information:
Fix CVE-2014-0017.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Mar 5 2014 - Andreas Schneider <asn(a)redhat.com> - 0.5.5-2
- resolves: #1072191 - Fix CVE-2014-0017.
- resolves: #1072741 - Fix CVE-2014-0017.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1072191 - CVE-2014-0017 libssh: Improper initialization of PRNG after fork()
https://bugzilla.redhat.com/show_bug.cgi?id=1072191
--------------------------------------------------------------------------------
================================================================================
shogun-data-0.8.1-0.2.git20140303.6615cf0.el5 (FEDORA-EPEL-2014-0750)
Data-files for the SHOGUN machine learning toolbox
--------------------------------------------------------------------------------
Update Information:
* updated to new snapshot git20140303.6615cf007634595d459853bf4dc6f1a227d2450c
* added a macro for use in other spec-files
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1068941 - shogun-data 0.8 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1068941
--------------------------------------------------------------------------------