The following Fedora EPEL 6 Security updates need testing:
Age URL
711
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2012-5620/bugzilla-3....
58
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0440/fwsnort-1.6...
53
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0483/boinc-clien...
43
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0590/oath-toolki...
18
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0846/mediawiki11...
14
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0888/v8-3.14.5.1...
9
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0938/seamonkey-2...
6
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0980/perl-YAML-L...
4
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0996/munin-2.0.2...
4
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-0990/libyaml-0.1...
2
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1011/php-ZendFra...
1
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1020/php-ZendFra...
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1039/mod_securit...
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1044/ansible-1.5...
0
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2014-1050/check-mk-1....
The following builds have been pushed to Fedora EPEL 6 updates-testing
ansible-1.5.4-1.el6
check-mk-1.2.4p1-1.el6
nodejs-exit-0.1.2-1.el6
nodejs-faye-websocket-0.7.2-2.el6
nodejs-getobject-0.1.0-1.el6
nodejs-grunt-0.4.4-1.el6
nodejs-grunt-compare-size-0.4.0-1.el6
nodejs-grunt-contrib-watch-0.6.1-1.el6
nodejs-grunt-git-authors-1.2.0-2.el6
nodejs-grunt-legacy-util-0.1.2-1.el6
nodejs-noptify-0.0.3-2.el6
nodejs-testswarm-1.1.0-1.el6
nodejs-tiny-lr-fork-0.0.5-2.el6
nodejs-websocket-driver-0.3.2-2.el6
perl-Business-Stripe-0.04-1.el6
stonevpn-0.4.15-1.el6
subnetcalc-2.2.1-1.el6
Details about builds:
================================================================================
ansible-1.5.4-1.el6 (FEDORA-EPEL-2014-1044)
SSH-based configuration management, deployment, and task execution system
--------------------------------------------------------------------------------
Update Information:
https://github.com/ansible/ansible/blob/release1.5.4/CHANGELOG.md * Security fix for
safe_eval, which further hardens the checking of the evaluation function.
* Fix for accelerate mode
* Add a missing dependency on python-setuptools
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 2 2014 Toshio Kuratomi <toshio(a)fedoraproject.org> - 1.5.4-1
- Update to 1.5.4
- Add upstream patch to fix accelerator mode
- Merge fedora and el6 spec files
* Fri Mar 14 2014 Kevin Fenzi <kevin(a)scrye.com> 1.5.3-2
- Update to NEW 1.5.3 upstream release.
- Add missing dependency on python-setuptools (el6 build)
* Thu Mar 13 2014 Kevin Fenzi <kevin(a)scrye.com> 1.5.3-1
- Update to 1.5.3
- Fix ansible-vault for newer python-crypto dependency (el6 build)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1083419 - Missing dependency python-setuptools
https://bugzilla.redhat.com/show_bug.cgi?id=1083419
--------------------------------------------------------------------------------
================================================================================
check-mk-1.2.4p1-1.el6 (FEDORA-EPEL-2014-1050)
A new general purpose Nagios-plugin for retrieving data
--------------------------------------------------------------------------------
Update Information:
Fixes CVEs:
- CVE-2014-2329
- CVE-2014-2330
- CVE-2014-2331
- CVE-2014-2332
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 2 2014 Andrea Veri <averi(a)fedoraproject.org> - 1.2.4p1-1
- New upstream release. Fixes the missing two CVEs that were still
left unfixed on 1.2.4:
- CVE-2014-2330
- CVE-2014-2331
* Tue Mar 25 2014 Andrea Veri <averi(a)fedoraproject.org> - 1.2.4-1
- New upstream release. Fixes the following CVEs:
- CVE-2014-2329
- CVE-2014-2332
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1080303 - CVE-2014-2329 CVE-2014-2330 CVE-2014-2331 CVE-2014-2332 check-mk:
multiple flaws fixed in versions 1.2.2p3 and 1.2.3i5
https://bugzilla.redhat.com/show_bug.cgi?id=1080303
--------------------------------------------------------------------------------
================================================================================
nodejs-exit-0.1.2-1.el6 (FEDORA-EPEL-2014-1045)
A process.exit alternative that ensures STDIO are fully drained before exiting
--------------------------------------------------------------------------------
Update Information:
Update nodejs-grunt to latest upstream release 0.4.4:
https://raw.githubusercontent.com/gruntjs/grunt/bfc869e0551992e3418a49892...
--------------------------------------------------------------------------------
================================================================================
nodejs-faye-websocket-0.7.2-2.el6 (FEDORA-EPEL-2014-1046)
A standards-compliant WebSocket server and client for Node.js
--------------------------------------------------------------------------------
Update Information:
Initial packages.
--------------------------------------------------------------------------------
================================================================================
nodejs-getobject-0.1.0-1.el6 (FEDORA-EPEL-2014-1045)
Get and set deep objects easily
--------------------------------------------------------------------------------
Update Information:
Update nodejs-grunt to latest upstream release 0.4.4:
https://raw.githubusercontent.com/gruntjs/grunt/bfc869e0551992e3418a49892...
--------------------------------------------------------------------------------
================================================================================
nodejs-grunt-0.4.4-1.el6 (FEDORA-EPEL-2014-1045)
Grunt is a JavaScript library used for automation and running tasks
--------------------------------------------------------------------------------
Update Information:
Update nodejs-grunt to latest upstream release 0.4.4:
https://raw.githubusercontent.com/gruntjs/grunt/bfc869e0551992e3418a49892...
--------------------------------------------------------------------------------
ChangeLog:
* Sat Mar 29 2014 Jamie Nguyen <jamielinux(a)fedoraproject.org> - 0.4.4-1
- update to upstream release 0.4.4
--------------------------------------------------------------------------------
================================================================================
nodejs-grunt-compare-size-0.4.0-1.el6 (FEDORA-EPEL-2014-1054)
Compare file sizes on this branch to master
--------------------------------------------------------------------------------
Update Information:
Initial package.
--------------------------------------------------------------------------------
================================================================================
nodejs-grunt-contrib-watch-0.6.1-1.el6 (FEDORA-EPEL-2014-1046)
Run predefined tasks whenever watched file patterns are added/changed/deleted
--------------------------------------------------------------------------------
Update Information:
Initial packages.
--------------------------------------------------------------------------------
================================================================================
nodejs-grunt-git-authors-1.2.0-2.el6 (FEDORA-EPEL-2014-1051)
A Grunt module to generate a list of authors from git history
--------------------------------------------------------------------------------
Update Information:
Initial package.
--------------------------------------------------------------------------------
================================================================================
nodejs-grunt-legacy-util-0.1.2-1.el6 (FEDORA-EPEL-2014-1045)
Deprecated Grunt utils provided for backwards compatibility
--------------------------------------------------------------------------------
Update Information:
Update nodejs-grunt to latest upstream release 0.4.4:
https://raw.githubusercontent.com/gruntjs/grunt/bfc869e0551992e3418a49892...
--------------------------------------------------------------------------------
================================================================================
nodejs-noptify-0.0.3-2.el6 (FEDORA-EPEL-2014-1046)
A wrapper for the nopt module with a commander-like API
--------------------------------------------------------------------------------
Update Information:
Initial packages.
--------------------------------------------------------------------------------
================================================================================
nodejs-testswarm-1.1.0-1.el6 (FEDORA-EPEL-2014-1048)
A Node.js module for interacting with TestSwarm
--------------------------------------------------------------------------------
Update Information:
Initial package.
--------------------------------------------------------------------------------
================================================================================
nodejs-tiny-lr-fork-0.0.5-2.el6 (FEDORA-EPEL-2014-1046)
A tiny LiveReload server implementation you can spawn in the background
--------------------------------------------------------------------------------
Update Information:
Initial packages.
--------------------------------------------------------------------------------
================================================================================
nodejs-websocket-driver-0.3.2-2.el6 (FEDORA-EPEL-2014-1046)
WebSocket protocol handler with pluggable I/O for Node.js
--------------------------------------------------------------------------------
Update Information:
Initial packages.
--------------------------------------------------------------------------------
================================================================================
perl-Business-Stripe-0.04-1.el6 (FEDORA-EPEL-2014-1053)
Interface for Stripe payment system
--------------------------------------------------------------------------------
Update Information:
Initial release
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1082281 - Review Request: perl-Business-Stripe - Interface for Stripe payment
system
https://bugzilla.redhat.com/show_bug.cgi?id=1082281
--------------------------------------------------------------------------------
================================================================================
stonevpn-0.4.15-1.el6 (FEDORA-EPEL-2014-1049)
Easy OpenVPN certificate and configuration management
--------------------------------------------------------------------------------
Update Information:
Added support for Android. Patch by Nerijus Baliunas <nerijus [at] users [dot]
sourceforge [dot] net>
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
================================================================================
subnetcalc-2.2.1-1.el6 (FEDORA-EPEL-2014-1052)
An IPv4/IPv6 Subnet Calculator
--------------------------------------------------------------------------------
Update Information:
Subnet calculator, support IPv4+v6
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1082322 - subnetcalc-2.2.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1082322
--------------------------------------------------------------------------------