The following Fedora EPEL 6 Security updates need testing:
Age URL
1138
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3....
203
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-4008/cross-binut...
64
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-1501/strongswan-...
54
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-5742/asterisk-1....
34
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-6089/drupal7-vie...
8
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-6400/ntfs-3g-201...
8
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-6421/php-ZendFra...
5
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-6487/rubygem-act...
1
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2015-6530/libreswan-3...
The following builds have been pushed to Fedora EPEL 6 updates-testing
check-mk-1.2.6p5-1.el6
mock-1.2.10-1.el6
osbs-0.11-1.el6
rpkg-1.35-2.el6
xrdp-0.6.1-3.el6
Details about builds:
================================================================================
check-mk-1.2.6p5-1.el6 (FEDORA-EPEL-2015-6558)
A new general purpose Nagios-plugin for retrieving data
--------------------------------------------------------------------------------
Update Information:
New upstream release: 1.2.6p5
New upstream release: 1.2.6p3
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p3
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p3
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
New upstream release: 1.2.6p2
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jun 3 2015 Andrea Veri <averi(a)fedoraproject.org> - 1.2.6p5-1
- New upstream release.
- Remove the dependency on php as it causes httpd and httpd-devel
to be installed with it.
* Wed May 20 2015 Andrea Veri <averi(a)fedoraproject.org> - 1.2.6p3-1
- New upstream release.
- Do not create an /etc/check_mk/conf.d/wato directory on both the
main and multisite packages.
* Tue May 5 2015 Andrea Veri <averi(a)fedoraproject.org> - 1.2.6p2-1
- New upstream release.
- Add a Require on bind-utils. (BZ: #1218501)
- Do not install all the plugins by default but make them available
on a different directory. Users will then be able to symlink each
of the plugins under the %{_datadir}/check-mk-agent/plugins directory
and finally mark them as active. Make sure mk_logins is however
installed to prevent the agent to complain about it being missing. (BZ: #1218516)
- Get rid of plugins from unsupported archs or operating systems.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1218501 - Missing bind-utils dependency
https://bugzilla.redhat.com/show_bug.cgi?id=1218501
[ 2 ] Bug #1218516 - Plugins should not be activated by default
https://bugzilla.redhat.com/show_bug.cgi?id=1218516
--------------------------------------------------------------------------------
================================================================================
mock-1.2.10-1.el6 (FEDORA-EPEL-2015-6563)
Builds packages inside chroots
--------------------------------------------------------------------------------
Update Information:
bugfixes
* new upstream release 1.2.9
* new plugin pm_request
--------------------------------------------------------------------------------
ChangeLog:
* Tue Jun 2 2015 Miroslav Suchý <msuchy(a)redhat.com> - 1.2.10-1
- do not require pyliblzma if using python3 [RHBZ#1227209]
- add warning to site-defaults.cfg that assumeyes=1 is important [RHBZ#1225004]
- sync comments in site-defaults.cfg with code [RHBZ#1224961]
- check for dangling link of /etc/mtab [RHBZ#1224732]
- Fix --install filename completion
* Wed May 13 2015 Miroslav Suchý <msuchy(a)redhat.com> - 1.2.9-1
- scm: do not keep copy of environ, this is now handled by uidmanager [RHBZ#1204395]
- Add pm_request plugin
- Drop lvm2-python-libs requires and enable lvm subpackage on el6
- Use lvs instead of lvm python bindings
- Unshare IPC ns only for chroot processes
- Add missing flush in logOutput
- Avoid infinite recursion in selinux plugin
* Wed Apr 29 2015 Miroslav Suchý <msuchy(a)redhat.com> - 1.2.8-1
- LVM plugin is removed on F22+ due RHBZ 1136366
- allow the chroot's location to be configurable [RHBZ#452730]
- send output of --chroot to log [RHBZ#1214178]
- chroot_scan: implement "only_failed" option [RHBZ#1190763]
- add comment why this previous commit was done [RHBZ#1192128]
- use rpm macros instead of cmd option for --nocheck [RHBZ#1192128]
- plugin options can be string if specified on command line [RHBZ#1193487]
- root_cache: do not assume volatile root with tmpfs [RHBZ#1193487]
- use CONFIG instead of CHROOT in help/man for --root option [RHBZ#1197131]
- more clarification on --dnf-cmd/--yum-cmd [RHBZ#1211621]
- scm correct the logic of exclude_vcs [RHBZ#1204240]
- ignore missing files in ccache [RHBZ#1210569]
- install buildsys-macros in el5 chroot [RHBZ#1213482]
- remove forgotten print statement [RHBZ#1202845]
- add a plugin that calls command (from the host) on the produced rpms.
- save/restore os.environ when dropping/restoring Privs [RHBZ#1204395]
- mock-scm pull tarball name from specfile instead of hardcoding [RHBZ#1204935]
- clarify "--yum-cmd" / "--dnf-cmd" options [RHBZ#1211621]
- return the SRPM name from do_buildsrpm (required for SCM builds) [1190450]
- binding DNF cache directory with yum_cache [RHBZ#1176560]
- suggest user to install dnf-plugins-core [RHBZ#1196248]
- ignore btrfs errors on non-btrfs systems [RHBZ#1205564]
- on F21- use hard deps instead of soft [RHBZ#1198769]
- delete btrfs subvolumes on exit [RHBZ#1205564]
- on python3 convert err from bytes to str [RHBZ#1211199]
- on F22+ use yum-deprecated instead of yum [RHBZ#1211978]
- if mountpoint is inside chroot, remove chroot part [RHBZ#1208299]
- chmod directory only if we really created it [RHBZ#1209532]
- port epel-5 configs to Python 3 [RHBZ#1204662]
- use nosync only for package management and chroot init [RHBZ#1184964]
- missing config file should not be fatal [RHBZ#1195749]
- pass variable "name" [RHBZ#1194171]
- correct chroot_scan configuration sample in site-defaults
- install missing chroot_scan plugin
- avoid creating resultdir as root
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1227209 - Mock requires pyliblzma
https://bugzilla.redhat.com/show_bug.cgi?id=1227209
[ 2 ] Bug #1225004 - Enforce YUM's "assumeyes" option
https://bugzilla.redhat.com/show_bug.cgi?id=1225004
[ 3 ] Bug #1224961 - site-defaults.cfg claims that
config_opts['yum_common_opts'] is a must while the other configs do not set it
https://bugzilla.redhat.com/show_bug.cgi?id=1224961
[ 4 ] Bug #1224732 - [abrt] mock: buildroot.py:442:_setup_devices:OSError: [Errno 17]
File exists
https://bugzilla.redhat.com/show_bug.cgi?id=1224732
[ 5 ] Bug #1192128 - --nocheck does not work with older rpm
https://bugzilla.redhat.com/show_bug.cgi?id=1192128
[ 6 ] Bug #1204240 - the exclude_vcs option seems to be behaving opposite its intended
meaning
https://bugzilla.redhat.com/show_bug.cgi?id=1204240
[ 7 ] Bug #1204935 - RFE: mock-scm pull tarball name from specfile instead of
hardcoding
https://bugzilla.redhat.com/show_bug.cgi?id=1204935
[ 8 ] Bug #1211199 - mockchain: TypeError: must be str, not bytes
https://bugzilla.redhat.com/show_bug.cgi?id=1211199
[ 9 ] Bug #1204662 - epel-5-x86_64 can't be initialilzed
https://bugzilla.redhat.com/show_bug.cgi?id=1204662
[ 10 ] Bug #452730 - RFE: Allow mock chroot's location to be configurable
https://bugzilla.redhat.com/show_bug.cgi?id=452730
[ 11 ] Bug #1211621 - doc: unclear "--yum-cmd" / "--dnf-cmd"
options
https://bugzilla.redhat.com/show_bug.cgi?id=1211621
[ 12 ] Bug #1213482 - Please provide buildsys-macros for EPEL5 builds
https://bugzilla.redhat.com/show_bug.cgi?id=1213482
[ 13 ] Bug #1190450 - SCM build fails with "CRITICAL: No package specified to
rebuild command."
https://bugzilla.redhat.com/show_bug.cgi?id=1190450
[ 14 ] Bug #1198769 - mock invokes dnf builddep but doesn't say dnf-plugins-core
needs to be installed
https://bugzilla.redhat.com/show_bug.cgi?id=1198769
[ 15 ] Bug #1209532 - [abrt] mock: mockchain:250:main:OSError: [Errno 1] Operation not
permitted: '/var/tmp/taskotron-mockchain'
https://bugzilla.redhat.com/show_bug.cgi?id=1209532
[ 16 ] Bug #1184964 - mock builds with the nosync plugin result in nosync.so being a
dependency
https://bugzilla.redhat.com/show_bug.cgi?id=1184964
[ 17 ] Bug #1194171 - mock exits with traceback: NameError: global name 'name'
is not defined
https://bugzilla.redhat.com/show_bug.cgi?id=1194171
[ 18 ] Bug #1214178 - mock --chroot do not send output to log files
https://bugzilla.redhat.com/show_bug.cgi?id=1214178
[ 19 ] Bug #1197131 - CONFIG instead of CHROOT in help for -r option
https://bugzilla.redhat.com/show_bug.cgi?id=1197131
[ 20 ] Bug #1202845 - --copyin has gotten noisy
https://bugzilla.redhat.com/show_bug.cgi?id=1202845
[ 21 ] Bug #1176560 - RFE: support binding the DNF cache directory like Yum's
https://bugzilla.redhat.com/show_bug.cgi?id=1176560
[ 22 ] Bug #1208299 - mock archives bind mounts in root cache tar file
https://bugzilla.redhat.com/show_bug.cgi?id=1208299
[ 23 ] Bug #1195749 - mock exits with traceback if there is no /etc/resolv.conf
https://bugzilla.redhat.com/show_bug.cgi?id=1195749
[ 24 ] Bug #1190763 - RFE: Can Koji be made to grab logs from a tree it has just built
or failed to build?
https://bugzilla.redhat.com/show_bug.cgi?id=1190763
[ 25 ] Bug #1193487 - root_cache plug-in overwrites root data if the tmpfs plug-in is
enabled
https://bugzilla.redhat.com/show_bug.cgi?id=1193487
[ 26 ] Bug #1210569 - Race condition in mock's ccache plugin
https://bugzilla.redhat.com/show_bug.cgi?id=1210569
[ 27 ] Bug #1204395 - mock-scm not using SSH_AUTH_SOCK environment variable
https://bugzilla.redhat.com/show_bug.cgi?id=1204395
[ 28 ] Bug #1196248 - Unable to build package for rawhide (f22)
https://bugzilla.redhat.com/show_bug.cgi?id=1196248
[ 29 ] Bug #1205564 - systemd creates 'var/lib/machines' btrfs subvolumes in
mock root
https://bugzilla.redhat.com/show_bug.cgi?id=1205564
[ 30 ] Bug #1211978 - mock does not use "yum-deprecated" if yum >=
3.4.3-505 is installed
https://bugzilla.redhat.com/show_bug.cgi?id=1211978
--------------------------------------------------------------------------------
================================================================================
osbs-0.11-1.el6 (FEDORA-EPEL-2015-6568)
Python command line client for OpenShift Build Service
--------------------------------------------------------------------------------
Update Information:
New upstream release.
new upstream release: 0.10
new upstream release: 0.9
new upstream release: 0.5
new upstream release: 0.10
new upstream release: 0.9
new upstream release: 0.5
new upstream release: 0.10
new upstream release: 0.9
new upstream release: 0.5
new upstream release: 0.10
new upstream release: 0.9
new upstream release: 0.5
new upstream release: 0.10
new upstream release: 0.9
new upstream release: 0.5
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jun 3 2015 Martin Milata <mmilata(a)redhat.com> - 0.11-1
- new upstream release: 0.11
* Thu May 28 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.10-1
- new upstream release: 0.10
* Thu May 28 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.9-1
- new upstream release: 0.9
* Tue May 26 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.8-1.1.git.c83fd0d
- test release 0.8-1.1
* Mon May 25 2015 Jiri Popelka <jpopelka(a)redhat.com> - 0.8-1
- new upstream release: 0.8
* Sat May 23 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.7-1.1.git.9c50ab0
- test release 0.7-1.1.git.9c50ab0
* Fri May 22 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.7-1
- new upstream release: 0.7
* Thu May 21 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.6-2.1
- testing release
* Thu May 21 2015 Jiri Popelka <jpopelka(a)redhat.com> - 0.6-2
- fix %license handling
* Thu May 21 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.6-1
- new upstream release: 0.6
* Tue May 19 2015 Tomas Tomecek <ttomecek(a)redhat.com> - 0.5-1
- new upstream release: 0.5
* Tue May 12 2015 Slavek Kabrda <bkabrda(a)redhat.com> - 0.4-2
- Introduce python-osbs subpackage
- move /usr/bin/osbs to /usr/bin/osbs2, /usr/bin/osbs is now a symlink
- depend on python[3]-setuptools because of entrypoints usage
--------------------------------------------------------------------------------
================================================================================
rpkg-1.35-2.el6 (FEDORA-EPEL-2015-6560)
Utility for interacting with rpm+git packaging systems
--------------------------------------------------------------------------------
Update Information:
This update:
- adds new command - container-build - to support building container images via osbs
client[1] and containerbuild plugin in Koji[2].
- has a lot of lookaside code refactoring supported by unit tests (by bochecha).
- adds long --verbose option to -v and new --debug and -d option to get tracebacks
Note: Fedora currently doesn't have OpenShift builders nor container build support in
Koji so container-build doesn't really work with fedpkg.
[1]
https://github.com/DBuildService/osbs
[2]
https://github.com/release-engineering/koji-containerbuild
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 26 2015 Dennis Gilmore <dennis(a)ausil.us> - 1.35-2
- pyrpkg Requires python-osbs
* Tue May 26 2015 Pavol Babincak <pbabinca(a)redhat.com> - 1.35-1
- Test for scratch opt in the actual argument of container_build_koji
(pbabinca)
- Move the GitIgnore class to its own module (bochecha)
- Modernize the gitignore-handling code (bochecha)
- gitignore: Properly handle adding matching lines (bochecha)
- Refactor: remove unnecessary code (pbabinca)
- Move custom UnknownTargetError to errors module (pbabinca)
- New command: container-build (jluza)
- lookaside: Take over file uploads (bochecha)
- Remove unnecessary log message (bochecha)
- Stop making source files read-only (bochecha)
- Drop some useless comments (bochecha)
- Only report we're uploading when we actually are (bochecha)
- lookaside: Check if a file already was uploaded (bochecha)
- lookaside: Allow client-side and custom CA certificates (bochecha)
- lookaside: Be more flexible when building the download URL (bochecha)
- lookaside: Use the hashtype for the URL interpolation (bochecha)
- lookaside: Add a progress callback (bochecha)
- lookaside: Handle downloading of source files (bochecha)
- lookaside: Move handling of file verification (bochecha)
- lookaside: Move handling of file hashing (bochecha)
- utils: Add a new warn_deprecated helper (bochecha)
- Add a new lookaside module (bochecha)
- Add a new utils module (bochecha)
- Properly set the logger (bochecha)
- Move our custom errors to their own module (bochecha)
- Don't assume MD5 for the lookaside cache (bochecha)
- Remove dead code (bochecha)
- Use the proper exception syntax (bochecha)
--------------------------------------------------------------------------------
================================================================================
xrdp-0.6.1-3.el6 (FEDORA-EPEL-2015-6561)
Open source remote desktop protocol (RDP) server
--------------------------------------------------------------------------------
Update Information:
Default sesman.ini file passes -ac to X server. Remove this parameter: insecure.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 4 2015 Bojan Smojver <bojan(a)rexursive.com> - 0.6.1-3
- remove -ac from X server calls: bug #1105202
- put other sesman.ini changes into a patch
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1105202 - Insecure setting in the default VNC configuration
https://bugzilla.redhat.com/show_bug.cgi?id=1105202
--------------------------------------------------------------------------------