The following Fedora EPEL 7 Security updates need testing:
Age URL
273
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3c9292b62d
condor-8.6.11-1.el7
81
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-f8311ec8a2
tor-0.3.5.8-1.el7
48
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-d2c1368294
cinnamon-3.6.7-5.el7
41
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-50a6a1ddfd
afflib-3.7.18-2.el7
14
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-c499781e80
python-gnupg-0.4.4-1.el7
13
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-de28ce6966
drupal7-7.66-1.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-bc0182548b
bubblewrap-0.3.3-2.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
brotli-1.0.7-5.el7
libAfterImage-1.20-21.el7
nodejs-rhea-1.0.7-1.el7
qpid-dispatch-1.7.0-1.el7
qpid-proton-0.28.0-1.el7
redhat-fonts-2.2.0-2.el7
rubygem-qpid_proton-0.28.0-1.el7
singularity-3.1.1-1.1.el7
Details about builds:
================================================================================
brotli-1.0.7-5.el7 (FEDORA-EPEL-2019-58692af96d)
Lossless compression algorithm
--------------------------------------------------------------------------------
Update Information:
Initial EPEL 7 package
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1611831 - Make brotli build on EPEL 7
https://bugzilla.redhat.com/show_bug.cgi?id=1611831
--------------------------------------------------------------------------------
================================================================================
libAfterImage-1.20-21.el7 (FEDORA-EPEL-2019-6a28a7fe8d)
A generic image manipulation library
--------------------------------------------------------------------------------
Update Information:
- Fix FTBFS (rhbz#1604550, rhbz#1675256) - Add build requires on gcc - Change
build requires from libungif-devel to giflib-devel (the libungif compat
library is no longer available since Fedora 28) - Port to giflib version 5 and
allow unbundling of giflib - Link the shared library with its dependencies and
adjust afterimage-libs and afterimage-config --libs to not list the
dependencies - Add build requires on librsvg2-devel and build the package with
SVG support - Create an -apps subpackage containing the sample programs (used to
be part of the -devel subpackage) - Do not enable the GLX extension - it
causes problems on newer Fedora releases (rhbz#1708922, rhbz#1615383 [aterm],
rhbz#1704691 [root]) - Update the license file with new FSF address
--------------------------------------------------------------------------------
ChangeLog:
* Mon May 13 2019 Mattias Ellert <mattias.ellert(a)physics.uu.se> - 1.20-21
- Fix FTBFS (rhbz#1604550, rhbz#1675256)
- Add build requires on gcc
- Change build requires from libungif-devel to giflib-devel
(the libungif compat library is no longer available since Fedora 28)
- Port to giflib version 5 and allow unbundling of giflib
- Link the shared library with its dependencies and adjust afterimage-libs
and afterimage-config --libs to not list the dependencies
- Add build requires on librsvg2-devel and build the package with SVG support
- Create an -apps subpackage containing the sample programs (used to be part
of the -devel subpackage)
- Do not enable the GLX extension - it causes problems on newer Fedora
releases (rhbz#817780, rhbz#1615383 [aterm], rhbz#1704691 [root])
- Update the license file with new FSF address
* Fri Feb 1 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.20-20
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Fri Jul 13 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.20-19
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Wed Feb 7 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.20-18
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Thu Aug 3 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.20-17
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
* Wed Jul 26 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.20-16
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Fri Feb 10 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.20-15
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Thu Feb 4 2016 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.20-14
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
* Wed Jun 17 2015 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.20-13
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.20-12
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.20-11
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Sat Aug 3 2013 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
1.20-10
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1704691 - ROOT gui is not working
https://bugzilla.redhat.com/show_bug.cgi?id=1704691
[ 2 ] Bug #1615383 - aterm won't start BadValue integer parameter out of range for
operation
https://bugzilla.redhat.com/show_bug.cgi?id=1615383
[ 3 ] Bug #1604550 - libAfterImage: FTBFS in Fedora rawhide
https://bugzilla.redhat.com/show_bug.cgi?id=1604550
[ 4 ] Bug #1708922 - The GLX extension causes problems on recent releases
https://bugzilla.redhat.com/show_bug.cgi?id=1708922
[ 5 ] Bug #1675256 - libAfterImage: FTBFS in Fedora rawhide/f30
https://bugzilla.redhat.com/show_bug.cgi?id=1675256
--------------------------------------------------------------------------------
================================================================================
nodejs-rhea-1.0.7-1.el7 (FEDORA-EPEL-2019-26b1a817c2)
A reactive messaging library based on the AMQP protocol
--------------------------------------------------------------------------------
Update Information:
Rebased to 1.0.7.
--------------------------------------------------------------------------------
ChangeLog:
* Mon May 13 2019 Irina Boverman <iboverma(a)redhat.com> - 1.0.7-1
- Rebased to 1.0.7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1679962 - nodejs-rhea-1.0.7 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1679962
--------------------------------------------------------------------------------
================================================================================
qpid-dispatch-1.7.0-1.el7 (FEDORA-EPEL-2019-7af36cd544)
Dispatch router for Qpid
--------------------------------------------------------------------------------
Update Information:
Rebased to 1.7.0.
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2019 Irina Boverman <iboverma(a)redhat.com> - 1.7.0-1
- Rebased to 1.7.0
--------------------------------------------------------------------------------
================================================================================
qpid-proton-0.28.0-1.el7 (FEDORA-EPEL-2019-7a40a554a4)
A high performance, lightweight messaging library
--------------------------------------------------------------------------------
Update Information:
Rebased to 0.28.0.
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2019 Irina Boverman <iboverma(a)redhat.com> - 0.28.0-1
- Rebased to 0.28.0
--------------------------------------------------------------------------------
================================================================================
redhat-fonts-2.2.0-2.el7 (FEDORA-EPEL-2019-d1d82e0784)
Red Hat fonts
--------------------------------------------------------------------------------
Update Information:
Add TTF files for tools like AsciiDoctor to be able to use them.
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2019 Ben Cotton <bcotton(a)fedoraproject.org> - 2.20-2
- Add TrueType font files (RHBZ #1709922)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1709922 - Add ttf files
https://bugzilla.redhat.com/show_bug.cgi?id=1709922
--------------------------------------------------------------------------------
================================================================================
rubygem-qpid_proton-0.28.0-1.el7 (FEDORA-EPEL-2019-01ddf75568)
Ruby language bindings for the Qpid Proton messaging framework
--------------------------------------------------------------------------------
Update Information:
Rebased to 0.28.0.
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2019 Irina Boverman <iboverma(a)redhat.com> - 0.28.0-1
- Rebased to 0.28.0
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1706927 - rubygem-qpid_proton-0.28.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1706927
--------------------------------------------------------------------------------
================================================================================
singularity-3.1.1-1.1.el7 (FEDORA-EPEL-2019-04c7455f6a)
Application and environment virtualization
--------------------------------------------------------------------------------
Update Information:
Add patch for CVE-2019-11328 ---- Update to upstream 3.1.1-1
--------------------------------------------------------------------------------
ChangeLog:
* Tue May 14 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.1.1-1.1
- Add patch for CVE-2019-11328
* Tue Apr 2 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.1.1-1
- Update to upstream 3.1.1-1
* Mon Feb 25 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.1.0-1
- Update to upstream 3.1.0-1
* Tue Jan 22 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.0.3-1
- Update to upstream 3.0.3-1 release.
* Fri Jan 18 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.0.3-rc2
- Update to upstream 3.0.3-rc2
* Wed Jan 16 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.0.3-rc1
- Update to upstream 3.0.3-rc1
* Wed Jan 9 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.0.2-1.2
- Add patch for PR 2531
* Mon Jan 7 2019 Dave Dykstra <dwd(a)fedoraproject.org> - 3.0.2-1.1
- Update to upstream 3.0.2
- Added patches for PRs 2472, 2478, 2481
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1693909 - singularity-3.1.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1693909
--------------------------------------------------------------------------------