The following Fedora EPEL 7 Security updates need testing:
Age URL
28
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-2748/nodejs-0.10...
27
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-2861/nodejs-qs-0...
27
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-2870/nodejs-send...
12
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3236/python-oaut...
11
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3283/php-ZendFra...
8
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3292/davfs2-1.4....
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3454/rubygem-htt...
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3432/drupal7-7.3...
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3328/zarafa-7.1....
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-3530/phpMyAdmin-...
The following builds have been pushed to Fedora EPEL 7 updates-testing
createrepo_c-0.7.0-1.el7
debootstrap-1.0.64-1.el7
fedora-review-0.5.2-1.el7
fldigi-3.22.01-1.el7
globus-gram-audit-4.3-2.el7
mate-themes-1.9.1-1.el7
mate-themes-extras-3.8.0-1.el7
nodejs-chainsaw-0.1.0-1.el7
ntfs-3g-2014.2.15-6.el7
phpMyAdmin-4.2.10.1-1.el7
python-django-pyscss-1.0.5-2.el7
python-pdfkit-0.4.1-5.el7
Details about builds:
================================================================================
createrepo_c-0.7.0-1.el7 (FEDORA-EPEL-2014-3536)
Creates a common metadata repository
--------------------------------------------------------------------------------
Update Information:
Update to 0.7.0
--------------------------------------------------------------------------------
ChangeLog:
* Mon Oct 20 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.7.0-1
- deltarpms: Update module to work with current version of drpm
- mergerepo_c: Add --omit-baseurl option
- craterepo_c: Gen empty repo if empty pkglist is used
- Docs: Output python docs to separate directory
- Several small fixes
* Tue Aug 12 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.6.1-1
- updateinfo: Use Python datetime objects in python bindings
* Tue Aug 5 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.6.0-1
- Support for updateinfo.xml manipulation (including Python bindings)
* Fri Jul 18 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.5.0-1
- Experimental delta rpm (DRPM) support (Disabled in Fedora build).
* Thu Jun 26 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.4.1-1
- Initialize threads correctly on old versions of GLib2 (RhBug: 1108787)
- Do not print log domain (get rid off C_CREATEREPOLIB prefix in log messages)
- Implements support for --cachedir
- New option --retain-old-md-by-age
- Few small API changes
* Tue May 6 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.4.0-1
- Change default behavior of repodata files handling. (RhBug: 1094539)
See:
https://github.com/Tojaj/createrepo_c/wiki/New-File-Handling
By default, createrepo leaves old groupfiles (comps files)
in the repodata/ directory during update.
Createrepo_c did the same thing but the version 0.4.0 changes this behaviour.
* Thu Apr 10 2014 Tomas Mlcoch <tmlcoch at redhat.com> - 0.3.1-2
- Support for weak and rich dependecies
--------------------------------------------------------------------------------
================================================================================
debootstrap-1.0.64-1.el7 (FEDORA-EPEL-2014-3546)
Debian GNU/Linux bootstrapper
--------------------------------------------------------------------------------
Update Information:
new upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 22 2014 Jan Vcelak <jvcelak(a)fedoraproject.org> 1.0.64-1
- new upstream release:
+ Ubuntu vivid as a symlink to gutsy
+ move set -e out of shebang line (Debian: #762713)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1146866 - debootstrap-1.0.64 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1146866
--------------------------------------------------------------------------------
================================================================================
fedora-review-0.5.2-1.el7 (FEDORA-EPEL-2014-3537)
Review tool for fedora rpm packages
--------------------------------------------------------------------------------
Update Information:
fedora-review for EPEL7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1140900 - RFE: Please branch for EPEL7
https://bugzilla.redhat.com/show_bug.cgi?id=1140900
--------------------------------------------------------------------------------
================================================================================
fldigi-3.22.01-1.el7 (FEDORA-EPEL-2014-3550)
Digital modem program for Linux
--------------------------------------------------------------------------------
Update Information:
Version 3.22.01 * Maintenance release
RX single click
* restored Name / QTH clickable
Macro Buttons
* Increase width of alternate macro button(s)
* Add 2 row scheme, one above, one below text panel
Thumb drive
* update documentation on thumb drive installation
Power Squelch
* Correct initial state of power squelch
Documentation update
* Added missing documentation on use of Smeter / Power-meter
display on main dialog.
* Added new xmlrpc TxID commands
TxID control via xmlrpc
* Added xmlrpc commands
- Main.get_txid
- Main.set_txid
- Main.toggle_txid
Analysis modem
* Fix seg fault in rx_process
XMLRPC Character measurement issues with 8PSK modems
* Update xmlprc Main_get_char_timing() routine. Problem still persist in
other areas of FLDIGI ie Macro CPS, other xmlrpc commands.
Gray-mapped 8PSK and soft-decision
* Upgraded 8psk to Gray mapped constellation
* Implemented Soft-Decision decoder based on Gray constellation
* Even when the received phase is distorted by +- 1 phase-position:
- One of the bits is still known with 100% certianty.
- Only up to 1 bit can be in error.
* Increased gain for noisy/weak/HF channels
View/Hide Smeter
* Add view/hide Smeter / Power meter
- configuration saved in progdefaults, requires
"save config" to keep setting between executions.
* Reduce minimum width of main dialog to 750 pixels
CW matched filter
* Fix to inoperative matched filter
flarq update
* flarq changes to bring up to date with the 3.21 maintenance
branch
* version 4.3.5
For changes to fldigi see:
http://www.w1hkj.com/downloads/fldigi/fldigi_changes.txt
For changes to flrig see:
http://www.w1hkj.com/downloads/flrig/changes.txt
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1155105 - fldigi-3.22.01 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1155105
--------------------------------------------------------------------------------
================================================================================
globus-gram-audit-4.3-2.el7 (FEDORA-EPEL-2014-3542)
Globus Toolkit - GRAM Jobmanager Auditing
--------------------------------------------------------------------------------
Update Information:
Remove unexpanded configure macro.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Oct 19 2014 Mattias Ellert <mattias.ellert(a)fysast.uu.se> - 4.3-2
- Remove unexpanded configure macro
--------------------------------------------------------------------------------
================================================================================
mate-themes-1.9.1-1.el7 (FEDORA-EPEL-2014-3547)
MATE Desktop themes
--------------------------------------------------------------------------------
Update Information:
- update to 1.9.1 release optimized for GTK3-3.8
--------------------------------------------------------------------------------
ChangeLog:
* Tue Oct 21 2014 Wolfgang Ulbrich <chat-to-me(a)raveit.de> - 1.9.1-1
- update to 1.9.1 release for GTK3-3.8
- fix contrasthigh icon theme name
- remove all themes which doesn't support GTK3
* Fri Oct 17 2014 Wolfgang Ulbrich <chat-to-me(a)raveit.de> - 3.8.0-1
- update to GTK3 3.8.0 release
- drop adwaita engine require
- drop old themes
- disable runtime require gtk-unico-engine for the moment, see rhbz (#1154061)
--------------------------------------------------------------------------------
================================================================================
mate-themes-extras-3.8.0-1.el7 (FEDORA-EPEL-2014-3406)
Extra gtk-2/3 themes for gtk based desktops
--------------------------------------------------------------------------------
Update Information:
- build for epel7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #998219 - Review Request: mate-themes-extras - GTK-2/3 themes for GTK based
desktops
https://bugzilla.redhat.com/show_bug.cgi?id=998219
--------------------------------------------------------------------------------
================================================================================
nodejs-chainsaw-0.1.0-1.el7 (FEDORA-EPEL-2014-3531)
Build chainable fluent interfaces the easy way
--------------------------------------------------------------------------------
Update Information:
Initial packaging
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1142049 - Review Request: nodejs-chainsaw - Build chainable fluent interfaces
the easy way
https://bugzilla.redhat.com/show_bug.cgi?id=1142049
--------------------------------------------------------------------------------
================================================================================
ntfs-3g-2014.2.15-6.el7 (FEDORA-EPEL-2014-3535)
Linux NTFS userspace driver
--------------------------------------------------------------------------------
Update Information:
Update to 2014.2.15 with fstrim fixes.
--------------------------------------------------------------------------------
ChangeLog:
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2:2014.2.15-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Tue Aug 5 2014 Richard W.M. Jones <rjones(a)redhat.com> - 2:2014.2.15-5
- Add upstream patch to fix fstrim so it works on partitions as well
as whole disks.
* Thu Jul 31 2014 Richard W.M. Jones <rjones(a)redhat.com> - 2:2014.2.15-4
- Upstream patches which add fstrim support.
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2:2014.2.15-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu Apr 24 2014 Tomáš Mráz <tmraz(a)redhat.com> - 2:2014.2.15-2
- Rebuild for new libgcrypt
* Wed Feb 26 2014 Tom Callaway <spot(a)fedoraproject.org> 2:2014.2.15-1
- update to 2014.2.15
* Sat Aug 3 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2:2013.1.13-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
phpMyAdmin-4.2.10.1-1.el7 (FEDORA-EPEL-2014-3530)
Handle the administration of MySQL over the World Wide Web
--------------------------------------------------------------------------------
Update Information:
phpMyAdmin 4.2.10.1 (2014-10-21)
================================
- [security] XSS in debug SQL output
- [security] XSS in monitor query analyzer
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 22 2014 Robert Scheck <robert(a)fedoraproject.org> 4.2.10.1-1
- Upgrade to 4.2.10.1 (#1155272, #1155362)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1155362 - CVE-2014-8326 phpmyadmin: cross-site scripting (XSS) flaw fixed in
versions 4.0.10.5, 4.1.14.6, and 4.2.10.1 (PMASA-2014-12)
https://bugzilla.redhat.com/show_bug.cgi?id=1155362
--------------------------------------------------------------------------------
================================================================================
python-django-pyscss-1.0.5-2.el7 (FEDORA-EPEL-2014-3540)
Makes it easier to use PySCSS in Django
--------------------------------------------------------------------------------
Update Information:
Initial build on EPEL7
--------------------------------------------------------------------------------
================================================================================
python-pdfkit-0.4.1-5.el7 (FEDORA-EPEL-2014-3538)
Wkhtmltopdf python wrapper
--------------------------------------------------------------------------------
Update Information:
New package for epel7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1145443 - Review Request: python-pdfkit - Python 2 wrapper for wkhtmltopdf
utility to convert HTML to PDF
https://bugzilla.redhat.com/show_bug.cgi?id=1145443
--------------------------------------------------------------------------------