The following Fedora EPEL 7 Security updates need testing:
Age URL
484
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2018-3c9292b62d
condor-8.6.11-1.el7
226
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-c499781e80
python-gnupg-0.4.4-1.el7
224
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-bc0182548b
bubblewrap-0.3.3-2.el7
12
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-72ead04703
proftpd-1.3.5e-8.el7
11
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-cd462a69ad
python3-requests-2.14.2-2.el7
7
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2019-eb770d67f7
knot-resolver-4.3.0-1.el7
The following builds have been pushed to Fedora EPEL 7 updates-testing
cacti-1.2.8-1.el7
cacti-spine-1.2.8-1.el7
python3-ethtool-0.14-1.el7
python3-libvirt-4.5.0-1.el7
tpm2-tss-2.3.1-1.el7
xorgxrdp-0.2.12-1.el7
Details about builds:
================================================================================
cacti-1.2.8-1.el7 (FEDORA-EPEL-2019-de07c8591e)
An rrd based graphing tool
--------------------------------------------------------------------------------
Update Information:
- Update to 1.2.8 Release notes:
https://www.cacti.net/release_notes.php?version=1.2.8 ---- - Update to 1.2.7
Release notes:
https://www.cacti.net/release_notes.php?version=1.2.7
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 11 2019 Morten Stevens <mstevens(a)fedoraproject.org> - 1.2.8-1
- Update to 1.2.8
- CVE-2019-17357, CVE-2019-17358, CVE-2019-16723
* Sat Nov 30 2019 Morten Stevens <mstevens(a)fedoraproject.org> - 1.2.7-1
- Update to 1.2.7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1769551 - CVE-2019-16723 cacti: Authentication bypass via graph_json.php
request
https://bugzilla.redhat.com/show_bug.cgi?id=1769551
--------------------------------------------------------------------------------
================================================================================
cacti-spine-1.2.8-1.el7 (FEDORA-EPEL-2019-de07c8591e)
Threaded poller for Cacti written in C
--------------------------------------------------------------------------------
Update Information:
- Update to 1.2.8 Release notes:
https://www.cacti.net/release_notes.php?version=1.2.8 ---- - Update to 1.2.7
Release notes:
https://www.cacti.net/release_notes.php?version=1.2.7
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 11 2019 Morten Stevens <mstevens(a)fedoraproject.org> - 1.2.8-1
- Update to 1.2.8
* Sat Nov 30 2019 Morten Stevens <mstevens(a)fedoraproject.org> - 1.2.7-1
- Update to 1.2.7
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1769551 - CVE-2019-16723 cacti: Authentication bypass via graph_json.php
request
https://bugzilla.redhat.com/show_bug.cgi?id=1769551
--------------------------------------------------------------------------------
================================================================================
python3-ethtool-0.14-1.el7 (FEDORA-EPEL-2019-bc97c61472)
Python module to interface with ethtool
--------------------------------------------------------------------------------
Update Information:
Build for EPEL7
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 10 2019 Orion Poplawski <orion(a)nwra.com> - 0 14-1
- Python 3 package for EPEL
--------------------------------------------------------------------------------
================================================================================
python3-libvirt-4.5.0-1.el7 (FEDORA-EPEL-2019-a7723b4c77)
The libvirt virtualization API python3 binding
--------------------------------------------------------------------------------
Update Information:
Python3 package for EPEL
--------------------------------------------------------------------------------
ChangeLog:
* Tue Dec 10 2019 Orion Poplawski <orion(a)nwra.com> - 4.5.0-1
- EPEL-only python3 package
--------------------------------------------------------------------------------
================================================================================
tpm2-tss-2.3.1-1.el7 (FEDORA-EPEL-2019-41c53bf1e5)
TPM2.0 Software Stack
--------------------------------------------------------------------------------
Update Information:
Initial package for EPEL 8.
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 10 2019 Yunying Sun <yunying.sun(a)intel.com> - 2.3.1-1
- Update to 2.3.1 release
* Wed Jul 26 2017 Sun Yunying <yunying.sun(a)intel.com> - 1.1.0-1
- Update to 1.1.0 release
* Sat Feb 11 2017 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.0-3
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1741795 - Please build txt2man for EPEL 8
https://bugzilla.redhat.com/show_bug.cgi?id=1741795
--------------------------------------------------------------------------------
================================================================================
xorgxrdp-0.2.12-1.el7 (FEDORA-EPEL-2019-54447271a8)
Implementation of xrdp backend as Xorg modules
--------------------------------------------------------------------------------
Update Information:
This version includes following features & fixes: - Glamor support for hardware
acceleration #151 - Fix some memory leak #152 - Fix issue on screen resizing
#153 neutrinolabs/xrdp#914
--------------------------------------------------------------------------------
ChangeLog:
* Wed Dec 11 2019 Bojan Smojver <bojan(a)rexursive.com> - 0.2.12-1
- Bump up to 0.2.12
* Tue Nov 26 2019 Bojan Smojver <bojan(a)rexursive.com> - 0.2.11-2
- Rebuild against Xorg 1.20.6
--------------------------------------------------------------------------------