The following Fedora EPEL 8 Security updates need testing:
Age URL
20
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-1e00c3d01e
cutter-re-2.2.0-1.el8 rizin-0.5.1-1.el8
5
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-95d6efd5d6
seamonkey-2.53.16-1.el8
2
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-711f25dbbf
netatalk-3.1.14-3.el8
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-d4a7c0e04e
pdns-recursor-4.8.4-1.el8
1
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-9215c40764
zchunk-1.3.1-1.el8
The following builds have been pushed to Fedora EPEL 8 updates-testing
bzip3-1.3.0-1.el8
cobbler3.2-3.2.2-15.el8
copr-cli-1.108-1.el8
copr-messaging-0.9-1.el8
fedora-license-data-1.17-1.el8
mongo-c-driver-1.23.3-1.el8
python-copr-1.128-1.el8
zabbix6.0-6.0.15-1.el8
Details about builds:
================================================================================
bzip3-1.3.0-1.el8 (FEDORA-EPEL-2023-b06600ebc7)
Tools for compressing and decompressing bzip3 files
--------------------------------------------------------------------------------
Update Information:
This release fixes a memory heap corruption.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 5 2023 Petr Pisar <ppisar(a)redhat.com> - 1.3.0-1
- 1.3.0 bump
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2184374 - bzip3-1.3.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2184374
--------------------------------------------------------------------------------
================================================================================
cobbler3.2-3.2.2-15.el8 (FEDORA-EPEL-2023-af2823cdd6)
Boot server configurator
--------------------------------------------------------------------------------
Update Information:
Fix dependencies. ---- Non-modular EPEL package for cobbler 3.2.X
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 5 2023 Orion Poplawski <orion(a)nwra.com> - 3.2.2-15
- Fix requires for cobbler-web/tests
* Sun Apr 2 2023 Orion Poplawski <orion(a)nwra.com> - 3.2.2-14
- Add upstream patches for EL8 and EL9 support
* Wed Aug 10 2022 Robby Callicotte <rcallicotte(a)fedoraproject.org> - 3.2.2-13
- Add upstream patch for reposync errors (bz#2117750)
* Fri Apr 22 2022 Xavier Bachelot <xavier(a)bachelot.org> - 3.2.2-12
- Add patch7:
- fix ldap anonymous bind
- sync distro signatures
- support older anaconda boot line options
* Wed Mar 23 2022 Orion Poplawski <orion(a)nwra.com> - 3.2.2-11
- Add upstream patch for CVE-2022-0860 (bz#2066592)
* Wed Mar 2 2022 Orion Poplawski <orion(a)nwra.com> - 3.2.2-10
- More complete fix for CVE-2021-45083 - enforce permissions in %post
* Tue Mar 1 2022 Orion Poplawski <orion(a)nwra.com> - 3.2.2-9
- Apply fixes for CVE-2021-45082/3
- Remove BR on python3-coverage
* Mon Jan 24 2022 Orion Poplawski <orion(a)nwra.com> - 3.2.2-8
- Fix posttrans script
* Wed Jan 19 2022 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.2.2-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Thu Dec 23 2021 Orion Poplawski <orion(a)nwra.com> - 3.2.2-6
- Fix path to settings.yaml in scriptlet
* Thu Dec 9 2021 Orion Poplawski <orion(a)nwra.com> - 3.2.2-5
- Remove defunct get-loaders command
* Mon Nov 22 2021 Orion Poplawski <orion(a)nwra.com> - 3.2.2-4
- Add new keys to settings.yaml on migration or if missing
- Save original settings to settings.rpmorig
* Fri Oct 8 2021 Orion Poplawski <orion(a)nwra.com> - 3.2.2-3
- Fix dependencies (bz#2010567)
* Thu Sep 23 2021 Orion Poplawski <orion(a)nwra.com> - 3.2.2-2
- Migrate settings to settings.yaml
- Migrate pre-cobbler 3 data if needed
- Fix autoinstall_templates -> templates
* Thu Sep 23 2021 Orion Poplawski <orion(a)nwra.com> - 3.2.2-1
- Update to 3.2.2
- bz#2006840: CVE-2021-40323: Arbitrary file disclosure/Template Injection
- bz#2006897: CVE-2021-40324: Arbitrary file write via upload_log_data XMLRPC function
- bz#2006904: CVE-2021-40325: Authorization bypass allows modifying settings
* Wed Sep 22 2021 Orion Poplawski <orion(a)nwra.com> - 3.2.1-1
- Update to 3.2.1
* Wed Jul 21 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.2.0-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
* Fri Jun 4 2021 Python Maint <python-maint(a)redhat.com> - 3.2.0-5
- Rebuilt for Python 3.10
* Tue Mar 2 2021 Zbigniew J��drzejewski-Szmek <zbyszek(a)in.waw.pl> - 3.2.0-4
- Rebuilt for updated systemd-rpm-macros
See
https://pagure.io/fesco/issue/2583.
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.2.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Sun Oct 25 2020 Orion Poplawski <orion(a)nwra.com> - 3.2.0-2
- Give root RW permission to /var/lib/cobbler/web.ss
- Fix SELinux cobbler logging issue
* Sat Oct 24 2020 Orion Poplawski <orion(a)nwra.com> - 3.2.0-1
- Update to 3.2.0
* Thu Sep 17 2020 Orion Poplawski <orion(a)nwra.com> - 3.1.2-4
- Add requires on python-distro and file
* Mon Jul 27 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.1.2-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Wed Jul 8 2020 Orion Poplawski <orion(a)nwra.com> - 3.1.2-2
- Fix apache configuration
* Fri May 29 2020 Orion Poplawski <orion(a)nwra.com> - 3.1.2-1
- Update to 3.1.2
* Tue May 26 2020 Miro Hron��ok <mhroncok(a)redhat.com> - 3.1.1-4
- Rebuilt for Python 3.9
* Fri Feb 21 2020 Orion Poplawski <orion(a)nwra.com> - 3.1.1-3
- Add requires for python3-dns
* Tue Jan 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 3.1.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Sun Jan 12 2020 Orion Poplawski <orion(a)nwra.com> - 3.1.1-1
- Update to 3.1.1
* Tue Oct 22 2019 Orion Poplawski <orion(a)nwra.com> - 3.0.1-4
- Drop koan completely, including obsoletes. It is a separate package now.
* Thu Oct 10 2019 Orion Poplawski <orion(a)nwra.com> - 3.0.1-3
- Require /sbin/service
* Tue Oct 8 2019 Orion Poplawski <orion(a)nwra.com> - 3.0.1-2
- Fix requires (requests instead of urlgrabber)
- Fix BR for EL8
* Mon Sep 9 2019 Nicolas Chauvet <kwizart(a)gmail.com> - 3.0.1-1
- Update to 3.0.1
* Fri Aug 30 2019 Nicolas Chauvet <kwizart(a)gmail.com> - 3.0.0-1
- Update to 3.0.0
* Mon Aug 26 2019 Nicolas Chauvet <kwizart(a)gmail.com> - 2.8.5-0.1
- Update to 2.8.5 - pre-release
* Wed Jul 24 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.4-7
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Thu Jan 31 2019 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.4-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Mon Nov 26 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.4-5
- Fix empty man pages (BZ 1653415)
* Mon Nov 26 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.4-4
- Revert bind_manage_ipmi feature that is broken on 2.8
* Sun Nov 25 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.4-3
- Use pathfix.py to fix python shebangs
* Sun Nov 25 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.4-2
- Make koan require python2-ethtool (BZ 1638933)
* Sat Nov 24 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.4-1
- Update to 2.8.4 (Fixes BZ 1613292, 1643860, 1614433, CVE-2018-1000226, CVE-2018-10931)
* Thu Jul 12 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.3-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
* Wed May 30 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.3-3
- koan requires urlgrabber
* Mon May 28 2018 Nicolas Chauvet <kwizart(a)gmail.com> - 2.8.3-2
- Restore mergeability with epel7
* Mon May 28 2018 Nicolas Chauvet <kwizart(a)gmail.com> - 2.8.3-1
- Update to 2.8.3 - security bugfix
* Wed Feb 21 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.2-6
- Really fix django requires for Fedora 28+
* Tue Feb 20 2018 Orion Poplawski <orion(a)nwra.com> - 2.8.2-5
- Fix django requires for Fedora 28+
* Fri Feb 9 2018 Igor Gnatenko <ignatenkobrain(a)fedoraproject.org> - 2.8.2-4
- Escape macros in %changelog
* Wed Feb 7 2018 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.2-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
* Tue Feb 6 2018 Iryna Shcherbina <ishcherb(a)redhat.com> - 2.8.2-2
- Update Python 2 dependency declarations to new packaging standards
(See
https://fedoraproject.org/wiki/FinalizingFedoraSwitchtoPython3)
* Mon Sep 18 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.2-1
- Update to 2.8.2
* Wed Aug 2 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.1-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
* Wed Jul 26 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.1-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
* Wed Jun 21 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.1-3
- Suppress logrotate output
* Mon Jun 12 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.1-2
- Fix module loading
* Wed May 24 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.1-1
- Update to 2.8.1
* Fri Feb 17 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.0-6
- Add patch to fix handling of multiple bridge interfaces
* Fri Feb 10 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.8.0-5
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
* Fri Jan 27 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.0-4
- Fix named patch
* Tue Jan 24 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.0-3
- Restart named-chroot service if used
* Fri Jan 20 2017 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.0-2
- Fix logrotate script for systemd (bug #1414617)
* Thu Dec 1 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.8.0-1
- Update to 2.8.0
- Restructure spec file
* Thu Sep 1 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-11.gitf78af86
- Add patches to fix TEMPLATE_DIRS and use OrderedDict
* Thu Aug 11 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-10.gitf78af86
- Force IPv4 connections to cobblerd from web proxy
* Thu Jul 21 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-9.gitf78af86
- Suppress "virt-install --os-variant list" error messages
* Thu Jul 21 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-8.git5680bf8
- Fix handling unknown os variants with osinfo-query
* Tue Jul 19 2016 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2.6.11-7.git95749a6
-
https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_...
* Wed Jul 13 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-6.git95749a6
- Fix typo in koan/app.py
* Wed Jul 13 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-5.git13b035f
- Update to current git snapshot (bug #1276896)
* Wed Feb 3 2016 Fedora Release Engineering <releng(a)fedoraproject.org> - 2.6.11-4
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
* Mon Feb 1 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-3
- Require dnf-plugins-core
* Sun Jan 24 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-2
- Require dnf-core-plugins instead of yum-utils for repoquery on Fedora 23+
* Sun Jan 24 2016 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.11-1
- Update to 2.6.11
- Make cobbler arch specific to allow for arch specific requires
* Thu Oct 1 2015 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.10-1
- Update to 2.6.10
* Mon Jun 22 2015 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.9-1
- Update to 2.6.9
* Wed Jun 17 2015 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2.6.8-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
* Tue May 12 2015 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.8-2
- Support django 1.8 in Fedora 22+
* Fri May 8 2015 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.8-1
- Update to 2.6.8
- Backport upstream patch to fix centos version detection (bug #1201879)
* Tue Apr 28 2015 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.7-3
- Add patch to fix virt-install support for F21+/EL7 (bug #1188424)
* Mon Apr 27 2015 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.7-2
- Create and own directories in tftp_dir
* Wed Dec 31 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.7-1
- Update to 2.6.7
* Sun Oct 19 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.6-1
- Update to 2.6.6
* Fri Aug 15 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.5-1
- Update to 2.6.5
* Wed Aug 13 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.4-2
- Require Django >= 1.4
* Mon Aug 11 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.4-1
- Update to 2.6.4
* Fri Jul 18 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.3-1
- Update to 2.6.3
* Wed Jul 16 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.2-1
- Update to 2.6.2
- Spec cleanup
* Sat Jun 7 2014 Fedora Release Engineering <rel-eng(a)lists.fedoraproject.org> -
2.6.1-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Fri May 23 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.1-1
- Update to 2.6.1
- Drop koan patch applied upstream
* Tue Apr 22 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.0-2
- Only require syslinux on x86
* Mon Apr 21 2014 Orion Poplawski <orion(a)cora.nwra.com> - 2.6.0-1
- Update to 2.6.0
--------------------------------------------------------------------------------
================================================================================
copr-cli-1.108-1.el8 (FEDORA-EPEL-2023-29edad2877)
Command line interface for COPR
--------------------------------------------------------------------------------
Update Information:
- Bump release version for release mess - Explicitly ask which user checks the
permissions - Add `get` cli command for proxy.project.get() - Add --review
parameter for download-build - Disable default option for modifying project -
Add option for follow_fedora_branching - Simplify `mock-config` output
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 5 2023 Jiri Kyjovsky <j1.kyjovsky(a)gmail.com> 1.108-1
- Bump release version for release mess
* Tue Apr 4 2023 Jiri Kyjovsky <j1.kyjovsky(a)gmail.com> 1.107-1
- Explicitly ask which user checks the permissions
- Add `get` cli command for proxy.project.get()
* Wed Mar 22 2023 Jiri Kyjovsky <j1.kyjovsky(a)gmail.com> 1.106-1
- Add --review parameter for download-build
- Disable default option for modifying project
- Add option for follow_fedora_branching
- Simplify `mock-config` output
--------------------------------------------------------------------------------
================================================================================
copr-messaging-0.9-1.el8 (FEDORA-EPEL-2023-b6f681b382)
Abstraction for Copr messaging listeners/publishers
--------------------------------------------------------------------------------
Update Information:
- Add app_name property to _CoprMessage base class
--------------------------------------------------------------------------------
ChangeLog:
* Wed Mar 22 2023 Jiri Kyjovsky <j1.kyjovsky(a)gmail.com> 0.9-1
- Add app_name property to _CoprMessage base class
* Tue Jan 24 2023 Jakub Kadlcik <frostyx(a)email.cz> 0.8-1
- Use SPDX license
--------------------------------------------------------------------------------
================================================================================
fedora-license-data-1.17-1.el8 (FEDORA-EPEL-2023-bfaa5f9e30)
Fedora Linux license data
--------------------------------------------------------------------------------
Update Information:
- Add dnsmasq po files public domain notice - add schema of fedora-license.json
- Add hanamin-fonts to UltraPermissive.txt - Add fontconfig to public-domain-
text.txt - Add HPND-Markus-Kuhn
- Add BSD-Advertising-Acknowledgement - Add Kazlib - Add CMU-Mach - Add perl-doc
to UltraPermissive - Add public-domain text for perl-libs - Add public-domain
text for perl-Test-Simple
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 5 2023 Miroslav Such�� <msuchy(a)redhat.com> 1.17-1
- Add dnsmasq po files public domain notice
- add schema of fedora-license.json
- Add hanamin-fonts to UltraPermissive.txt
- Add fontconfig to public-domain-text.txt
- Add HPND-Markus-Kuhn
- Add BSD-Advertising-Acknowledgement
- Add Kazlib
- Add CMU-Mach
- Add perl-doc to UltraPermissive
- Add public-domain text for perl-libs
- Add public-domain text for perl-Test-Simple
--------------------------------------------------------------------------------
================================================================================
mongo-c-driver-1.23.3-1.el8 (FEDORA-EPEL-2023-4a05ef78e1)
Client library written in C for MongoDB
--------------------------------------------------------------------------------
Update Information:
**libmongoc 1.23.3** Fixes: * Better handle malformed hello responses *
Handle connectionId of type double.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 5 2023 Remi Collet <remi(a)remirepo.net> - 1.23.3-1
- update to 1.23.3
- use SPDX license ID
--------------------------------------------------------------------------------
================================================================================
python-copr-1.128-1.el8 (FEDORA-EPEL-2023-e77e1349b9)
Python interface for Copr
--------------------------------------------------------------------------------
Update Information:
- Rebuilding for release mess - Explicitly ask which user checks the permissions
- Make sure user can build in the project before uploading - Add option for
follow_fedora_branching
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 5 2023 Jiri Kyjovsky <j1.kyjovsky(a)gmail.com> 1.128-1
- Rebuilding for release mess
* Tue Apr 4 2023 Jiri Kyjovsky <j1.kyjovsky(a)gmail.com> 1.127-1
- Explicitly ask which user checks the permissions
- Make sure user can build in the project before uploading
* Wed Mar 22 2023 Jiri Kyjovsky <j1.kyjovsky(a)gmail.com> 1.126-1
- Add option for follow_fedora_branching
--------------------------------------------------------------------------------
================================================================================
zabbix6.0-6.0.15-1.el8 (FEDORA-EPEL-2023-2d36f45cd7)
Open-source monitoring solution for your IT infrastructure
--------------------------------------------------------------------------------
Update Information:
Update to 6.0.15
--------------------------------------------------------------------------------
ChangeLog:
* Wed Apr 5 2023 Orion Poplawski <orion(a)nwra.com> - 6.0.15-1
- Update to 6.0.15
--------------------------------------------------------------------------------