The following Fedora EPEL 5 Security updates need testing: Age URL 678 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5630/bugzilla-3.2.1... 168 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11560/fail2ban-0.8.... 132 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-11893/libguestfs-1.... 107 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-12091/bip-0.8.9-1.e... 98 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-12169/gc-7.1-6.el5 14 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0531/libyaml-0.1.2-... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0581/augeas-1.2.0-1... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0560/zabbix20-2.0.1... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0542/drupal6-ctools... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0541/drupal7-ctools... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0533/drupal6-filefi... 12 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0572/drupal6-image_... 7 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0645/easy-rsa-2.2.2... 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0696/mediawiki119-1... 0 https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0702/mod_auth_shado...
The following builds have been pushed to Fedora EPEL 5 updates-testing
bcfg2-1.3.3-5.el5 byobu-5.73-4.el5 chkrootkit-0.49-3.el5 epic5-1.1.7-1.el5 gfal2-2.5.5-1.el5 mediawiki119-1.19.12-1.el5 mod_auth_shadow-2.3-2.el5 perl-File-Slurp-Tiny-0.003-3.el5 python-dirq-1.6.1-1.el5 tomoe-0.6.0-28.el5
Details about builds:
================================================================================ bcfg2-1.3.3-5.el5 (FEDORA-EPEL-2014-0713) A configuration management system -------------------------------------------------------------------------------- Update Information:
Rebuild for release 5, which re-enables unit tests on the EPEL7 branch. It should be a no-op for other distros. -------------------------------------------------------------------------------- ChangeLog:
* Wed Feb 26 2014 John Morris john@zultron.com - 1.3.3-5 - EL7: Re-add deps and re-enable %check script; bz #1058427 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1058427 - Add bcfg2 package to EPEL7 https://bugzilla.redhat.com/show_bug.cgi?id=1058427 --------------------------------------------------------------------------------
================================================================================ byobu-5.73-4.el5 (FEDORA-EPEL-2014-0710) Light-weight, configurable window manager built upon GNU screen -------------------------------------------------------------------------------- Update Information:
patch for issue with missing ~/.byobu/status leading to crash in byobu-config fix for : bg#1058747 - multiple sourcing of tmux/tmuxrc bg#1069419 - tmux backend does not remove date and time even if deselected in byobu-config various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora fix for : bg#1058747 - multiple sourcing of tmux/tmuxrc bg#1069419 - tmux backend does not remove date and time even if deselected in byobu-config various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora fix for : bg#1058747 - multiple sourcing of tmux/tmuxrc bg#1069419 - tmux backend does not remove date and time even if deselected in byobu-config various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora fix for : bg#1058747 - multiple sourcing of tmux/tmuxrc bg#1069419 - tmux backend does not remove date and time even if deselected in byobu-config various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora various upstream patches Update to version 5.73 Update to version 5.73 update to latest version Update to latest version + bugfixes from fedora update to latest version Update to latest version + bugfixes from fedora -------------------------------------------------------------------------------- ChangeLog:
* Fri Feb 28 2014 Jan Klepek <jan.klepek at, gmail.com> - 5.73-4 - patch for issue with missing ~/.byobu/status leading to crash in byobu-config * Thu Feb 27 2014 Jan Klepek <jan.klepek at, gmail.com> - 5.73-3 - various upstream patches * Wed Feb 26 2014 Jan Klepek <jan.klepek at, gmail.com> - 5.73-2 - various upstream patches * Tue Feb 18 2014 Jan Klepek <jan.klepek at, gmail.com> - 5.73-1 - Update to latest release * Thu Jan 9 2014 Jan Klepek <jan.klepek at, gmail.com> - 5.69-2 - added icon (#1013240) * Wed Jan 8 2014 Jan Klepek <jan.klepek at, gmail.com> - 5.69-1 - update to latest version (#873560) - added tmux dependency (#907267) * Thu Dec 12 2013 Ville Skyttä ville.skytta@iki.fi - 5.21-7 - Install docs to %{_pkgdocdir} where available (#993689). - Fix bogus dates in %changelog. * Sat Aug 3 2013 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 5.21-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Wed Feb 13 2013 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 5.21-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1071094 - [abrt] byobu: config.py:215:writestatus:IOError: [Errno 2] 没有那个文件或目录: '/root/.byobu/status' https://bugzilla.redhat.com/show_bug.cgi?id=1071094 [ 2 ] Bug #1058747 - Byobu sources $BYOBU_CONFIG_DIR/.tmux.conf twice https://bugzilla.redhat.com/show_bug.cgi?id=1058747 [ 3 ] Bug #1069419 - Byobu with tmux backend does not remove date and time even if deselected in byobu-config https://bugzilla.redhat.com/show_bug.cgi?id=1069419 [ 4 ] Bug #1055258 - byobu-5.73 is available https://bugzilla.redhat.com/show_bug.cgi?id=1055258 --------------------------------------------------------------------------------
================================================================================ chkrootkit-0.49-3.el5 (FEDORA-EPEL-2014-0706) Tool to locally check for signs of a rootkit -------------------------------------------------------------------------------- Update Information:
Includes an updated chkutmp-outofbounds patch which should fix the stack smashing segfaults -------------------------------------------------------------------------------- ChangeLog:
* Tue Feb 25 2014 Manuel "lonely wolf" Wolfshant wolfy@fedoraproject.org - 0.49-3 - update chkutmp-outofbounds.patch with the one from fedora. should fix #1069632 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1069632 - Chkrootkit - "Stack Smashing" https://bugzilla.redhat.com/show_bug.cgi?id=1069632 [ 2 ] Bug #626067 - Chkrootkit - "Stack Smashing" https://bugzilla.redhat.com/show_bug.cgi?id=626067 --------------------------------------------------------------------------------
================================================================================ epic5-1.1.7-1.el5 (FEDORA-EPEL-2014-0698) Enhanced Programmable ircII Client -------------------------------------------------------------------------------- Update Information:
Update to 1.1.7 -------------------------------------------------------------------------------- ChangeLog:
* Mon Feb 24 2014 Dan Mashal dan.mashal@fedoraproject.org 1.1.7-1 - Update to 1.1.7 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1055263 - epic5-1.1.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=1055263 --------------------------------------------------------------------------------
================================================================================ gfal2-2.5.5-1.el5 (FEDORA-EPEL-2014-0682) Grid file access library 2.0 -------------------------------------------------------------------------------- Update Information:
Release 2.5.5 of GFAL2 -------------------------------------------------------------------------------- ChangeLog:
* Wed Feb 26 2014 Adrien Devresse <adevress at cern.ch> - 2.5.5-1 - Release 2.5.5 of GFAL2 --------------------------------------------------------------------------------
================================================================================ mediawiki119-1.19.12-1.el5 (FEDORA-EPEL-2014-0696) A wiki engine -------------------------------------------------------------------------------- Update Information:
Update to 1.19.12 -------------------------------------------------------------------------------- ChangeLog:
* Fri Feb 28 2014 Patrick Uiterwijk (LOCAL) puiterwijk@redhat.com - 1.19.12-1 - Update to 1.19.12 - (bug 60771) SECURITY: Disallow uploading SVG files using non-whitelisted namespaces. Also disallow iframe elements. User will get an error including the namespace name if they use a non- whitelisted namespace. - (bug 61346) SECURITY: Make token comparison use constant time. It seems like our token comparison would be vulnerable to timing attacks. This will take constant time. --------------------------------------------------------------------------------
================================================================================ mod_auth_shadow-2.3-2.el5 (FEDORA-EPEL-2014-0702) An Apache module for authentication using /etc/shadow -------------------------------------------------------------------------------- Update Information:
correct behavior for cases where crypt() is returning NULL -------------------------------------------------------------------------------- ChangeLog:
--------------------------------------------------------------------------------
================================================================================ perl-File-Slurp-Tiny-0.003-3.el5 (FEDORA-EPEL-2014-0715) A simple, sane and efficient file slurper -------------------------------------------------------------------------------- Update Information:
This is the first Fedora/EPEL release of perl-File-Slurp-Tiny. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1064995 - Review Request: perl-File-Slurp-Tiny - A simple, sane and efficient file slurper https://bugzilla.redhat.com/show_bug.cgi?id=1064995 --------------------------------------------------------------------------------
================================================================================ python-dirq-1.6.1-1.el5 (FEDORA-EPEL-2014-0693) Directory based queue -------------------------------------------------------------------------------- Update Information:
Update to upstream version, rhbz #1069202. -------------------------------------------------------------------------------- ChangeLog:
* Tue Feb 25 2014 Massimo Paladin massimo.paladin@gmail.com - 1.6.1-1 - Update to upstream version, rhbz #1069202. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1069202 - Upgrade to new upstream version https://bugzilla.redhat.com/show_bug.cgi?id=1069202 --------------------------------------------------------------------------------
================================================================================ tomoe-0.6.0-28.el5 (FEDORA-EPEL-2014-0676) Handwritten input system for Japanese and Chinese -------------------------------------------------------------------------------- Update Information:
Fixes skip code license issue. -------------------------------------------------------------------------------- ChangeLog:
* Fri Feb 14 2014 Peng Wu pwu@redhat.com - 0.6.0-28 - Add comments * Wed Feb 12 2014 Peng Wu pwu@redhat.com - 0.6.0-27 - Fixes skip code license issue (rhbz#969415) --------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org