The following Fedora EPEL 8 Security updates need testing: Age URL 5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-4cbae7b5bd unrealircd-6.1.4-1.el8 4 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-1bdb2efa01 tor-0.4.8.10-1.el8 3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-4138b387a7 php-adodb-5.22.7-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
fedora-license-data-1.37-1.el8 java-latest-openjdk-21.0.1.0.12-4.rolling.el8 lasso-epel-2.6.0-13.el8.1 lemonldap-ng-2.18.1-1.el8 perl-Authen-WebAuthn-0.002-1.el8 python3.11-jinja2-epel-3.1.2-1.el8 python3.11-markupsafe-epel-2.1.3-1.el8 rpki-client-8.7-1.el8 wavbreaker-0.16-1.el8 xerces-c-3.2.5-1.el8
Details about builds:
================================================================================ fedora-license-data-1.37-1.el8 (FEDORA-EPEL-2023-1034121ba6) Fedora Linux license data -------------------------------------------------------------------------------- Update Information:
Automatic update for fedora-license-data-1.37-1.el8. ##### **Changelog for fedora-license-data** ``` * Fri Dec 22 2023 Miroslav Such�� msuchy@redhat.com 1.37-1 - add license HPND-Kevlin-Henney - add license FSFAP-no-warranty- disclaimer - add not allowed license LicenseRef-Nikto - add LicenseRef-Fedora- Firmware * Thu Dec 07 2023 Miroslav Such�� msuchy@redhat.com 1.36-1 - new license: TCP-wrappers - new license: LicenseRef-Not-Copyrightable - new license: SAX-PD-2.0 - new license: radvd ``` -------------------------------------------------------------------------------- ChangeLog:
* Fri Dec 22 2023 Miroslav Such�� msuchy@redhat.com 1.37-1 - add license HPND-Kevlin-Henney - add license FSFAP-no-warranty-disclaimer - add not allowed license LicenseRef-Nikto - add LicenseRef-Fedora-Firmware * Thu Dec 7 2023 Miroslav Such�� msuchy@redhat.com 1.36-1 - new license: TCP-wrappers - new license: LicenseRef-Not-Copyrightable - new license: SAX-PD-2.0 - new license: radvd --------------------------------------------------------------------------------
================================================================================ java-latest-openjdk-21.0.1.0.12-4.rolling.el8 (FEDORA-EPEL-2023-d85e860239) OpenJDK 21 Runtime Environment -------------------------------------------------------------------------------- Update Information:
repack from single binary - https://fedoraproject.org/wiki/Changes/BuildJdkOncePackEverywhere -------------------------------------------------------------------------------- ChangeLog:
* Sat Dec 16 2023 Jiri Vanek jvanek@redhat.com - 1:21.0.1.0.12-4.rolling * using generated sources from portables for final debuginfo * Sat Dec 9 2023 Jiri Vanek jvanek@redhat.com - 1:21.0.1.0.12-3.rolling - proeprly filing debugsources pkg by addedd symlinks restructuring the structure for original build sources - according to logs, some are still missing probably generated during the build, and thus not existing in prep, when the sources subpkg is created after patching -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2233283 - Build JDKs once, repack everywhere https://bugzilla.redhat.com/show_bug.cgi?id=2233283 --------------------------------------------------------------------------------
================================================================================ lasso-epel-2.6.0-13.el8.1 (FEDORA-EPEL-2023-e0472f61de) Liberty Alliance Single Sign On -------------------------------------------------------------------------------- Update Information:
Initial lasso-epel package to ship missing perl-lasso subpackage. -------------------------------------------------------------------------------- ChangeLog:
* Fri Dec 22 2023 Xavier Bachelot xavier@bachelot.org - 2.6.0-13.1 - Properly generate perl provides and requires * Fri Dec 22 2023 Carl George carlwgeorge@fedoraproject.org - 2.6.0-13 - Convert to lasso-epel package to ship missing perl-lasso subpackage rhbz#2251952 * Wed May 4 2022 Tomas Halman thalman@redhat.com - 2.6.0-13 - Publishing the python3-lasso binding - Resolves: rhbz#1888195 - Release python lasso package * Fri Jul 30 2021 Jakub Hrozek jhrozek@redhat.com - 2.6.0-12 - Fix a dead code issue in the signature wrapping patch - Resolves: rhbz#1951653 - CVE-2021-28091 lasso: XML signature wrapping vulnerability when parsing SAML responses [rhel-8] * Mon Jun 21 2021 Jakub Hrozek jhrozek@redhat.com - 2.6.0-11 - Bump release to force the package through OSCI as the previous build reached CI just in time for an outage - Related: rhbz#1888195 - [RFE] release (built) python3-lasso pkg (comingfrom lasso) * Fri Jun 4 2021 Jakub Hrozek jhrozek@redhat.com - 2.6.0-10 - Resolves: rhbz#1951653 - CVE-2021-28091 lasso: XML signature wrapping vulnerability when parsing SAML responses [rhel-8] * Thu May 6 2021 Jakub Hrozek jhrozek@redhat.com - 2.6.0-9 - Resolves: rhbz#1888195 - [RFE] release (built) python3-lasso pkg (coming from lasso) * Fri Oct 18 2019 Jakub Hrozek jhrozek@redhat.com - 2.6.0-8 - Resolves: rhbz#1730018 - lasso includes "Destination" attribute in SAML AuthnRequest populated with SP AssertionConsumerServiceURL when ECP workflow is used which leads to IdP-side errors * Fri Jun 14 2019 Jakub Hrozek jhrozek@redhat.com - 2.6.0-7 - Resolves: rhbz#1634268 - ECP signature check fails with LASSO_DS_ERROR_SIGNATURE_NOT_FOUND when assertion signed instead of response * Thu Jun 13 2019 Jakub Hrozek jhrozek@redhat.com - 2.6.0-6 - Resolves: rhbz#1719020 - Expired certificate prevents tests from running * Tue Sep 25 2018 Tomas Orsava torsava@redhat.com - 2.6.0-5 - Require the Python interpreter directly instead of using the package name - Resolves: rhbz#1633617 * Tue Jul 17 2018 jdennis@redhat.com - 2.6.0-4 - more fixes for py2/py3 build dependencies * Mon Jul 9 2018 jdennis@redhat.com - 2.6.0-3 - Modify configure to search for versioned python - Resolves: rhbz#1598047 - Related: rhbz#1589856 * Wed Jun 27 2018 jdennis@redhat.com - 2.6.0-2 - fix language bindings package names to comply with guidelines, instead of %{name}-lang use lang-%{name} - fix conditional logic used to build on rhel - Resolves: rhbz#1589856 Drop python2 subpackage from RHEL8 * Tue Jun 26 2018 jdennis@redhat.com - 2.6.0-1 - Upgrade to latest upstream - Build using Python3, add python3 subpackage - Resolves: rhbz#1592416 Enable perl subpackage * Wed May 2 2018 John Dennis jdennis@redhat.com - 2.5.1-13 - add xmlsec1 version dependency * Tue May 1 2018 John Dennis jdennis@redhat.com - 2.5.1-12 - Resolves: rhbz#1542126, rhbz#1556016 - xmlsec removed SOAP support, reimplement missing xmlSecSoap* in Lasso * Wed Feb 7 2018 Fedora Release Engineering releng@fedoraproject.org - 2.5.1-11 - Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild * Fri Jan 5 2018 Iryna Shcherbina ishcherb@redhat.com - 2.5.1-10 - Update Python 2 dependency declarations to new packaging standards (See https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3) * Sun Aug 20 2017 Zbigniew J��drzejewski-Szmek zbyszek@in.waw.pl - 2.5.1-9 - Add Provides for the old name without %_isa * Sat Aug 19 2017 Zbigniew J��drzejewski-Szmek zbyszek@in.waw.pl - 2.5.1-8 - Python 2 binary package renamed to python2-lasso See https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3 * Thu Aug 3 2017 Fedora Release Engineering releng@fedoraproject.org - 2.5.1-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild * Wed Jul 26 2017 Fedora Release Engineering releng@fedoraproject.org - 2.5.1-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild * Fri Feb 10 2017 Fedora Release Engineering releng@fedoraproject.org - 2.5.1-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild * Tue Jul 19 2016 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.5.1-4 - https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Pac... * Thu Jun 30 2016 John Dennis jdennis@redhat.com - 2.5.1-3 - disbable PHP binding because PHP-7 is now the default and lasso only knows how to build with PHP-5 * Wed Jun 15 2016 John Dennis jdennis@redhat.com - 2.5.1-2 - fix CFLAGS override in configure * Mon Feb 22 2016 John Dennis jdennis@redhat.com - 2.5.1-1 - Upgrade to upstream 2.5.1 release See Changelog for details, mostly bugs fixes, most signficant is proper support of SHA-2 Resolves: #1295472 Resolves: #1303573 - Add java_binding_lasso_log.patch to fix "make check" failure during rpmbuild upstream commit d8e3ae8 * Thu Feb 4 2016 Fedora Release Engineering releng@fedoraproject.org - 2.5.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild * Mon Sep 14 2015 John Dennis jdennis@redhat.com - 2.5.0-1 - Upgrade to new upstream 2.5.0 release Includes ECP support * Wed Jun 17 2015 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.4.1-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild * Mon Mar 23 2015 Rob Crittenden rcritten@redhat.com - 2.4.1-3 - Add BuildRequires on libtool - Add -fPIC to LDFLAGS - Disable perl bindings, it fails to build on x86. * Fri Jan 23 2015 Simo Sorce simo@redhat.com - 2.4.1-2 - Enable perl bindings - Also add support for building with automake 1.15 - Fix build issues on rawhide due to missing build dep on perl(Error) * Thu Aug 28 2014 Simo Sorce simo@redhat.com - 2.4.1-1 - New upstream relase 2.4.1 - Drop patches as they have all been integrated upstream * Sun Aug 17 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.4.0-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild * Fri Jun 20 2014 Remi Collet rcollet@redhat.com - 2.4.0-4 - rebuild for https://fedoraproject.org/wiki/Changes/Php56 - add numerical prefix to extension configuration file - drop unneeded dependency on pecl - add provides php-lasso * Sat Jun 7 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 2.4.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Fri Apr 25 2014 Simo Sorce simo@redhat.com - 2.4.0-2 - Fixes for arches where pointers and integers do not have the same size (ppc64, s390, etc..) * Mon Apr 14 2014 Stanislav Ochotnicky sochotnicky@redhat.com - 2.4.0-1 - Use OpenJDK instead of GCJ for java bindings * Sat Jan 11 2014 Simo Sorce simo@redhat.com 2.4.0-0 - Update to final 2.4.0 version - Drop all patches, they are now included in 2.4.0 - Change Source URI * Mon Dec 9 2013 Simo Sorce simo@redhat.com 2.3.6-0.20131125.5 - Add patches to fix rpmlint license issues - Add upstream patches to fix some build issues * Thu Dec 5 2013 Simo Sorce simo@redhat.com 2.3.6-0.20131125.4 - Add patch to support automake-1.14 for rawhide * Mon Nov 25 2013 Simo Sorce simo@redhat.com 2.3.6-0.20131125.3 - Initial packaging - Based on the spec file by Jean-Marc Liger jmliger@siris.sorbonne.fr - Code is updated to latest master via a jumbo patch while waiting for official upstream release. - Jumbo patch includes also additional patches sent to upstream list) to build on Fedora 20 - Perl bindings are disabled as they fail to build - Disable doc building as it doesn't ork correctly for now --------------------------------------------------------------------------------
================================================================================ lemonldap-ng-2.18.1-1.el8 (FEDORA-EPEL-2023-ff213d537a) Web Single Sign On (SSO) and Access Management -------------------------------------------------------------------------------- Update Information:
Upstream changelog: - https://gitlab.ow2.org/lemonldap-ng/lemonldap- ng/-/releases/v2.18.1 - https://gitlab.ow2.org/lemonldap-ng/lemonldap- ng/-/releases/v2.18.0 -------------------------------------------------------------------------------- ChangeLog:
* Fri Dec 22 2023 Clement Oudot clem.oudot@gmail.com - 2.18.1-1 - Update to 2.18.1 * Wed Dec 20 2023 Clement Oudot clem.oudot@gmail.com - 2.18.0-1 - Update to 2.18.0 --------------------------------------------------------------------------------
================================================================================ perl-Authen-WebAuthn-0.002-1.el8 (FEDORA-EPEL-2023-049243c3b6) Library to add Web Authentication support to server applications -------------------------------------------------------------------------------- Update Information:
New features: * Supported attestation types: none, packed, fido-u2f * Mandatory attestation trust chain validation -------------------------------------------------------------------------------- ChangeLog:
* Fri Dec 22 2023 Xavier Bachelot xavier@bachelot.org - 0.002-1 - Update to 0.002 - Convert License to SPDX - Cleanup specfile * Thu Jul 20 2023 Fedora Release Engineering releng@fedoraproject.org - 0.001-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Fri Jan 20 2023 Fedora Release Engineering releng@fedoraproject.org - 0.001-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild * Fri Jul 22 2022 Fedora Release Engineering releng@fedoraproject.org - 0.001-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild * Wed Jun 1 2022 Jitka Plesnikova jplesnik@redhat.com - 0.001-3 - Perl 5.36 rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2255628 - perl-Authen-WebAuthn-0.002 is available https://bugzilla.redhat.com/show_bug.cgi?id=2255628 --------------------------------------------------------------------------------
================================================================================ python3.11-jinja2-epel-3.1.2-1.el8 (FEDORA-EPEL-2023-6d54874bdd) General purpose template engine -------------------------------------------------------------------------------- Update Information:
Build for EPEL with Python 3.11 -------------------------------------------------------------------------------- ChangeLog:
* Thu Dec 21 2023 Orion Poplawski orion@nwra.com - 3.1.2-1 - Build for EPEL with Python 3.11 --------------------------------------------------------------------------------
================================================================================ python3.11-markupsafe-epel-2.1.3-1.el8 (FEDORA-EPEL-2023-6d54874bdd) Implements a XML/HTML/XHTML Markup safe string for Python -------------------------------------------------------------------------------- Update Information:
Build for EPEL with Python 3.11 -------------------------------------------------------------------------------- ChangeLog:
* Thu Dec 21 2023 Orion Poplawski orion@nwra.com - 2.1.3-1 - Build for EPEL with Python 3.11 --------------------------------------------------------------------------------
================================================================================ rpki-client-8.7-1.el8 (FEDORA-EPEL-2023-a788b2d499) OpenBSD RPKI validator to support BGP Origin Validation -------------------------------------------------------------------------------- Update Information:
# rpki-client 8.7 - Add ability to constrain an RPKI Trust Anchor's effective signing authority to a limited set of Internet numbers. This allows Relying Parties to enjoy the potential benefits of assuming trust, but within a bounded scope. This distribution includes curated constraints files. More information: https://datatracker.ietf.org/doc/html/draft-snijders-constraining-rpki-trust... anchors - Following a 'failed fetch' (described in RFC 9286), emit a warning and continue with a previously cached Manifest file, if present and still valid. - Emit a warning when the same `manifestNumber` is re-used across multiple issuances. - Emit a warning when the remote repository presents a Manifest with an unexpected `manifestNumber`. Purported new manifests are expected to have a higher `manifestNumber` than previously validated manifests. Otherwise fall back to the previously cached manifest, if it is still valid. This warning can be indicative of manifest replays or of out-of-order publishing. - Require RPKI object files to be of a minimum of 100 bytes in both the RRDP and RSYNC transports. - No longer synchronize directory modtimes in the local cache to align with remote RSYNC repository sources. - Improved CRL extension checking. - Experimental support for the P-256 signature algorithm. - Various refactoring work. -------------------------------------------------------------------------------- ChangeLog:
* Fri Dec 22 2023 Robert Scheck robert@fedoraproject.org 8.7-1 - Upgrade to 8.7 (#2255458) -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2255458 - rpki-client-8.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=2255458 --------------------------------------------------------------------------------
================================================================================ wavbreaker-0.16-1.el8 (FEDORA-EPEL-2023-690d0ae9c8) GUI tool to losslessly split WAV, MP2 and MP3 files into multiple parts -------------------------------------------------------------------------------- Update Information:
Initial package for EPEL8 -------------------------------------------------------------------------------- ChangeLog:
* Thu Dec 21 2023 Benjamin A. Beasley code@musicinmybrain.net - 0.16-1 - Update to 0.16 * Thu Dec 21 2023 Benjamin A. Beasley code@musicinmybrain.net - 0.15-1 - Update to 0.15 * Thu Dec 21 2023 Benjamin A. Beasley code@musicinmybrain.net - 0.14-1 - Update to 0.14 * Thu Dec 21 2023 Benjamin A. Beasley code@musicinmybrain.net - 0.13-1 - Update to 0.13 * Thu Dec 21 2023 Benjamin A. Beasley code@musicinmybrain.net - 0.12-1 - Update to 0.12 * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 0.10-30 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Sat Jan 21 2023 Fedora Release Engineering releng@fedoraproject.org - 0.10-29 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild * Sat Jul 23 2022 Fedora Release Engineering releng@fedoraproject.org - 0.10-28 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild * Sat Jan 22 2022 Fedora Release Engineering releng@fedoraproject.org - 0.10-27 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild * Fri Jul 23 2021 Fedora Release Engineering releng@fedoraproject.org - 0.10-26 - Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild * Wed Jan 27 2021 Fedora Release Engineering releng@fedoraproject.org - 0.10-25 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild * Wed Jul 29 2020 Fedora Release Engineering releng@fedoraproject.org - 0.10-24 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild * Fri Jan 31 2020 Fedora Release Engineering releng@fedoraproject.org - 0.10-23 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild * Sat Jul 27 2019 Fedora Release Engineering releng@fedoraproject.org - 0.10-22 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Sun Feb 3 2019 Fedora Release Engineering releng@fedoraproject.org - 0.10-21 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild * Sat Jul 14 2018 Fedora Release Engineering releng@fedoraproject.org - 0.10-20 - Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild * Fri Feb 9 2018 Igor Gnatenko ignatenkobrain@fedoraproject.org - 0.10-19 - Escape macros in %changelog * Thu Aug 3 2017 Fedora Release Engineering releng@fedoraproject.org - 0.10-18 - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild * Thu Jul 27 2017 Fedora Release Engineering releng@fedoraproject.org - 0.10-17 - Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild * Sat Feb 11 2017 Fedora Release Engineering releng@fedoraproject.org - 0.10-16 - Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild * Fri Feb 5 2016 Fedora Release Engineering releng@fedoraproject.org - 0.10-15 - Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild * Fri Jun 19 2015 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-14 - Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild * Mon Aug 18 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-13 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild * Fri Jun 20 2014 Yaakov Selkowitz yselkowi@redhat.com - 0.10-12 - Fix FTBFS with -Werror=format-security (#1037382, #1107132) * Sun Jun 8 2014 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-11 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sun Aug 4 2013 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-10 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild * Mon Feb 11 2013 Parag Nemade <paragn AT fedoraproject DOT org> - 0.10-9 - Remove vendor tag from desktop file as per https://fedorahosted.org/fesco/ticket/1077 - Cleanup spec as per recently changed packaging guidelines * Sun Jul 22 2012 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild * Sat Jan 14 2012 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild * Tue Dec 6 2011 Adam Jackson ajax@redhat.com - 0.10-6 - Rebuild for new libpng * Mon Feb 7 2011 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild * Wed Sep 23 2009 Orcan Ogetbil <oget[DOT]fedora[AT]gmail[DOT]com> - 0.10-4 - Update desktop file according to F-12 FedoraStudio feature * Mon Jul 27 2009 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild * Wed Feb 25 2009 Fedora Release Engineering rel-eng@lists.fedoraproject.org - 0.10-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild * Thu Jun 5 2008 Homer <dmaley at nc.rr.com> - 0.10-1 - move to latest upstream release * Fri May 23 2008 Todd Zullinger tmz@pobox.com - 0.9-4 - fix license tag * Mon Feb 18 2008 Fedora Release Engineering rel-eng@fedoraproject.org - 0.9-3 - Autorebuild for GCC 4.3 * Tue Jan 22 2008 Homer <dmaley at nc.rr.com> 0.9-2 - bump release for F8 -> F9 upgrade path * Tue Nov 20 2007 Homer <dmaley at nc.rr.com> 0.9-1 - move to latest upstream release * Tue Aug 28 2007 Fedora Release Engineering <rel-eng at fedoraproject dot org> - 0.8.1-4 - Rebuild for selinux ppc32 issue. * Tue Aug 28 2007 Homer <dmaley at nc.rr.com> 0.8.1-3 - bump rev for F-8 mass rebuild * Fri Jul 6 2007 Homer <dmaley at nc.rr.com> 0.8.1-2 - new version 0.8.1 * Sun May 13 2007 Homer <dmaley at nc.rr.com> 0.8-1 - new version 0.8 * Tue Oct 3 2006 Homer <dmaley at nc.rr.com> 0.7-6 - added wavbreaker-tooltips.patch * Thu Jun 1 2006 Homer <dmaley at nc.rr.com> 0.7-5 - replaced wavbreaker-0.7-browsedir-set_current_folder.patch w/ wavbreaker-0.7-browsedir-set_current_folder-v2.patch * Tue May 30 2006 Homer <dmaley at nc.rr.com> 0.7-4 - added wavbreaker-0.7-browsedir-set_current_folder.patch * Mon Apr 3 2006 Homer <dmaley at nc.rr.com> 0.7-3 - fixed %doc * Tue Mar 21 2006 Homer <dmaley at nc.rr.com> 0.7-2 - added %doc * Mon Feb 27 2006 Homer <dmaley at nc.rr.com> 0.7-1 - initial 0.7 build * Mon Feb 20 2006 Homer <dmaley at nc.rr.com> 0.7a-1 - initial 0.7a build * Wed Jan 25 2006 Homer <dmaley at nc.rr.com> 0.6.1-6 - default to ALSA * Mon Dec 19 2005 Homer <dmaley at nc.rr.com> 0.6.1-5 - more .spec cleanup * Fri Dec 9 2005 Homer <dmaley at nc.rr.com> 0.6.1-4 - continued .spec cleanup * Wed Dec 7 2005 Homer <dmaley at nc.rr.com> 0.6.1-3 - cleaned up .spec based on Fedora Extras guidelines * Mon Sep 12 2005 Homer <homerj at nc.rr.com> 0.6-homer.2 - fixed progress bar for save-as (wavbreaker-saveas-progress.patch) * Thu Jun 2 2005 Homer <homerj at nc.rr.com> 0.6-homer.1 - rebuilt for 0.6.1 (bugfix release) * Wed Jun 1 2005 Homer <homerj at nc.rr.com> 0.6-homer.1 - 0.6 released * Mon May 23 2005 Homer <homerj at nc.rr.com> 0.6c-homer.2 - 0.6c (beta) release * Thu May 19 2005 Homer <homerj at nc.rr.com> 0.6b-homer.3 - SPEC file clean-up * Sat Feb 12 2005 Homer <homerj at nc.rr.com> 0.6b-homer.2 - appconfig.c: added remember-driver patch * Tue Feb 8 2005 Homer <homerj at nc.rr.com> 0.6b-homer.1 - 0.6b (beta) release - Makefile.am: added -lasound to wavbreaker_LDADD to fix compile error * Fri Oct 29 2004 Homer <homerj at nc.rr.com> 0.5-homer.2 - attempted fix file closing bug (wavbreaker-fclose.patch) - added BuildRequires for gtk2-devel * Tue Jul 13 2004 Homer <homerj at nc.rr.com> 0.5-homer.1 - rebuilt for 0.5 release * Thu Jul 1 2004 Homer <homerj at nc.rr.com> 0.4-homer.4 - actually fixed icon bug * Thu Jul 1 2004 Homer <homerj at nc.rr.com> 0.4-homer.2 - (failed) attempt to fix icon bug * Tue Jun 15 2004 Homer <homerj at nc.rr.com> - initial build --------------------------------------------------------------------------------
================================================================================ xerces-c-3.2.5-1.el8 (FEDORA-EPEL-2023-f6a8bbe365) Validating XML Parser -------------------------------------------------------------------------------- Update Information:
Update to 3.2.5, fixing CVE-2018-1311 and CVE-2023-37536 -------------------------------------------------------------------------------- ChangeLog:
* Fri Dec 22 2023 Kalev Lember klember@redhat.com - 3.2.5-1 - Update to 3.2.5, fixing CVE-2018-1311 and CVE-2023-37536 * Sat Jul 22 2023 Fedora Release Engineering releng@fedoraproject.org - 3.2.3-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Sat Jan 21 2023 Fedora Release Engineering releng@fedoraproject.org - 3.2.3-8 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild * Sat Jul 23 2022 Fedora Release Engineering releng@fedoraproject.org - 3.2.3-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild * Sat Jan 22 2022 Fedora Release Engineering releng@fedoraproject.org - 3.2.3-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1788472 - CVE-2018-1311 xerces-c: XML parser contains a use-after-free error triggered during the scanning of external DTDs https://bugzilla.redhat.com/show_bug.cgi?id=1788472 [ 2 ] Bug #2243426 - CVE-2023-37536 xerces-c: An integer overflow issue that allows remote attackers to cause out-of-bound access via HTTP request https://bugzilla.redhat.com/show_bug.cgi?id=2243426 --------------------------------------------------------------------------------
epel-devel@lists.fedoraproject.org